"Time of Day","Process Name","PID","Operation","Path","Result","Detail" "22:28:13.4210626","Explorer.EXE","3844","ReadFile","E:\#COMPOSITIONS\In Progress\Solo Work\Riff Library\Professional\Dark & Light\02-AXE LOOP {1,2}-150116_2216.wav","SUCCESS","Offset: 208,175,104, Length: 27,744" "22:28:13.4210921","Explorer.EXE","3844","WriteFile","\\169.254.200.77\removable_SDCARD\Dark & Light\02-AXE LOOP {1,2}-150116_2216.wav","SUCCESS","Offset: 208,175,104, Length: 27,744, Priority: Normal" "22:28:13.4939452","Explorer.EXE","3844","RegQueryKey","HKCU\Software\Classes","SUCCESS","Query: Name" "22:28:13.4939724","Explorer.EXE","3844","RegQueryKey","HKCU\Software\Classes","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:13.4939928","Explorer.EXE","3844","RegQueryKey","HKCU\Software\Classes","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:13.4940200","Explorer.EXE","3844","RegOpenKey","HKCU\Software\Classes\Applications\explorer.exe","NAME NOT FOUND","Desired Access: Read" "22:28:13.4940506","Explorer.EXE","3844","RegOpenKey","HKCR\Applications\explorer.exe","SUCCESS","Desired Access: Read" "22:28:13.4940843","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: Name" "22:28:13.4941046","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:13.4941341","Explorer.EXE","3844","RegOpenKey","HKCU\Software\Classes\Applications\explorer.exe","NAME NOT FOUND","Desired Access: Read" "22:28:13.4941552","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:13.4941774","Explorer.EXE","3844","RegOpenKey","HKCR\Applications\explorer.exe","SUCCESS","Desired Access: Read" "22:28:13.4942046","Explorer.EXE","3844","RegCloseKey","HKCR\Applications\explorer.exe","SUCCESS","" "22:28:13.4942245","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: Name" "22:28:13.4942433","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:13.4942671","Explorer.EXE","3844","RegOpenKey","HKCU\Software\Classes\Applications\explorer.exe\TaskbarExceptionsIcons","NAME NOT FOUND","Desired Access: Read" "22:28:13.4942878","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:13.4943077","Explorer.EXE","3844","RegOpenKey","HKCR\Applications\explorer.exe\TaskbarExceptionsIcons","NAME NOT FOUND","Desired Access: Read" "22:28:13.4943276","Explorer.EXE","3844","RegCloseKey","HKCR\Applications\explorer.exe","SUCCESS","" "22:28:13.5309350","Explorer.EXE","3844","CloseFile","E:\#COMPOSITIONS\In Progress\Solo Work\Riff Library\Professional\Dark & Light\02-AXE LOOP {1,2}-150116_2216.wav","SUCCESS","" "22:28:13.5309638","Explorer.EXE","3844","SetBasicInformationFile","\\169.254.200.77\removable_SDCARD\Dark & Light\02-AXE LOOP {1,2}-150116_2216.wav","SUCCESS","CreationTime: 01/01/1601 01:00:00, LastAccessTime: 01/01/1601 01:00:00, LastWriteTime: 16/01/2015 23:28:58, ChangeTime: 01/01/1601 01:00:00, FileAttributes: n/a" "22:28:13.5347153","Explorer.EXE","3844","CloseFile","\\169.254.200.77\removable_SDCARD\Dark & Light\02-AXE LOOP {1,2}-150116_2216.wav","","" "22:28:16.3128689","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:16.3129084","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:16.3231795","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:16.3232152","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:16.3321339","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:16.3321646","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:16.3754165","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:16.3754510","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:16.4221579","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:16.4221912","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:16.4242379","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:16.4242682","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:17.0755095","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 5696, User Time: 0.0312002, Kernel Time: 0.0000000" "22:28:17.2405287","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 3192, User Time: 0.1092007, Kernel Time: 0.1560010" "22:28:17.2406402","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 3252, User Time: 0.1092007, Kernel Time: 0.1404009" "22:28:17.2424256","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 5292, User Time: 0.1092007, Kernel Time: 0.1872012" "22:28:17.2425118","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 7084, User Time: 0.1248008, Kernel Time: 0.2184014" "22:28:17.2426007","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 5964, User Time: 0.1248008, Kernel Time: 0.0468003" "22:28:17.2454534","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 6244, User Time: 0.0468003, Kernel Time: 0.0156001" "22:28:17.2554874","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 7964, User Time: 0.0936006, Kernel Time: 0.1560010" "22:28:17.3065328","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 8552, User Time: 0.0624004, Kernel Time: 0.1404009" "22:28:17.3576714","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 7408, User Time: 0.0312002, Kernel Time: 0.0936006" "22:28:17.3577143","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 4404, User Time: 0.0156001, Kernel Time: 0.1092007" "22:28:17.3708152","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 6888, User Time: 0.0936006, Kernel Time: 0.1872012" "22:28:17.3709083","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 5792, User Time: 0.0624004, Kernel Time: 0.2340015" "22:28:17.4634919","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 2656, User Time: 0.0624004, Kernel Time: 0.1404009" "22:28:17.4654608","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 7324, User Time: 0.1404009, Kernel Time: 0.1248008" "22:28:31.2436753","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:31.2437078","Explorer.EXE","3844","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","SUCCESS","Desired Access: Read" "22:28:31.2437439","Explorer.EXE","3844","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes\Segoe UI","NAME NOT FOUND","Length: 144" "22:28:31.2437714","Explorer.EXE","3844","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","SUCCESS","" "22:28:32.3745782","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:32.3746142","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\CTF\KnownClasses","NAME NOT FOUND","Desired Access: Read" "22:28:33.1975097","Explorer.EXE","3844","Thread Create","","SUCCESS","Thread ID: 7956" "22:28:33.1977855","Explorer.EXE","3844","Thread Exit","","SUCCESS","Thread ID: 7956, User Time: 0.0000000, Kernel Time: 0.0000000" "22:28:33.2992864","Explorer.EXE","3844","RegQueryKey","HKCU\Software\Classes","SUCCESS","Query: Name" "22:28:33.2993132","Explorer.EXE","3844","RegQueryKey","HKCU\Software\Classes","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.2993331","Explorer.EXE","3844","RegQueryKey","HKCU\Software\Classes","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.2993588","Explorer.EXE","3844","RegOpenKey","HKCU\Software\Classes\Applications\explorer.exe","NAME NOT FOUND","Desired Access: Read" "22:28:33.2993887","Explorer.EXE","3844","RegOpenKey","HKCR\Applications\explorer.exe","SUCCESS","Desired Access: Read" "22:28:33.2994209","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: Name" "22:28:33.2994412","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.2994703","Explorer.EXE","3844","RegOpenKey","HKCU\Software\Classes\Applications\explorer.exe","NAME NOT FOUND","Desired Access: Read" "22:28:33.2994917","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.2995124","Explorer.EXE","3844","RegOpenKey","HKCR\Applications\explorer.exe","SUCCESS","Desired Access: Read" "22:28:33.2995385","Explorer.EXE","3844","RegCloseKey","HKCR\Applications\explorer.exe","SUCCESS","" "22:28:33.2995584","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: Name" "22:28:33.2995772","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.2996009","Explorer.EXE","3844","RegOpenKey","HKCU\Software\Classes\Applications\explorer.exe\TaskbarExceptionsIcons","NAME NOT FOUND","Desired Access: Read" "22:28:33.2996212","Explorer.EXE","3844","RegQueryKey","HKCR\Applications\explorer.exe","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.2996412","Explorer.EXE","3844","RegOpenKey","HKCR\Applications\explorer.exe\TaskbarExceptionsIcons","NAME NOT FOUND","Desired Access: Read" "22:28:33.2996641","Explorer.EXE","3844","RegCloseKey","HKCR\Applications\explorer.exe","SUCCESS","" "22:28:33.8828755","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.8829126","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:33.9405891","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.9406206","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:33.9899634","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:33.9899963","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:34.0357175","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:34.0357505","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value" "22:28:34.0378178","Explorer.EXE","3844","RegQueryKey","HKLM","SUCCESS","Query: HandleTags, HandleTags: 0x0" "22:28:34.0378484","Explorer.EXE","3844","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellCompatibility\Objects\{031E4825-7B94-4DC3-B131-E946B44C8DD5}","NAME NOT FOUND","Desired Access: Query Value"