13241300x800000000000000087640Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 09:00:05.078{0BACA6B2-1494-655F-6C02-000000002903}4884C:\Program Files\Mozilla Firefox\pingsender.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087637Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 09:00:05.062{0BACA6B2-1494-655F-6B02-000000002903}3200C:\Program Files\Mozilla Firefox\pingsender.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087634Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 09:00:05.062{0BACA6B2-1494-655F-6F02-000000002903}3476C:\Program Files\Mozilla Firefox\pingsender.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087589Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 09:00:04.533{0BACA6B2-1480-655F-5602-000000002903}2280C:\Program Files\Mozilla Firefox\firefox.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087575Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 09:00:01.127{0BACA6B2-1480-655F-5602-000000002903}2280C:\Program Files\Mozilla Firefox\firefox.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087534Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 08:59:57.281{0BACA6B2-1480-655F-5602-000000002903}2280C:\Program Files\Mozilla Firefox\firefox.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087463Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 08:59:53.696{0BACA6B2-1480-655F-5602-000000002903}2280C:\Program Files\Mozilla Firefox\firefox.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087115Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 08:59:46.669{0BACA6B2-1480-655F-5602-000000002903}2280C:\Program Files\Mozilla Firefox\firefox.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000087110Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 08:59:46.669{0BACA6B2-1480-655F-5602-000000002903}2280C:\Program Files\Mozilla Firefox\firefox.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000085822Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.localT1484SetValue2023-11-23 08:42:29.107{0BACA6B2-1075-655F-EC01-000000002903}4148C:\Windows\system32\reg.exeHKU\S-1-5-21-217062234-2484139415-3727922708-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000001)ATTACKRANGE\Administrator 13241300x800000000000000079352Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.local-SetValue2023-11-23 08:02:39.247{0BACA6B2-071F-655F-2100-000000002903}1960C:\Windows\system32\msdtc.exeHKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnableDWORD (0x00000000)NT AUTHORITY\SYSTEM