Files
ThreatHunt/backend/tests/test_csvs/03_process_listing.csv
2026-02-20 14:32:42 -05:00

204 KiB

1ComputerNameCreateTimePidPPidNameCommandLineUsernameMemoryUsage
2HR-WS-0012026-02-12T10:06:34.315Z6087014svchost.exeC:\Windows\System32\svchost.exeACME\emartinez250928
3HR-WS-0012026-02-19T08:38:47.946Z2359637264explorer.exeC:\Windows\System32\explorer.exeACME\emartinez365399
4HR-WS-0012026-02-16T12:03:51.097Z4736117701chrome.exeC:\Windows\System32\chrome.exeACME\emartinez45600
5HR-WS-0012026-02-15T23:09:10.835Z1600848097msedge.exeC:\Windows\System32\msedge.exeACME\emartinez249301
6HR-WS-0012026-02-15T20:11:09.667Z5846646416outlook.exeC:\Windows\System32\outlook.exeACME\emartinez457525
7HR-WS-0012026-02-16T04:17:25.731Z2787505teams.exeC:\Windows\System32\teams.exeACME\emartinez47458
8HR-WS-0012026-02-17T05:34:43.018Z4137951444code.exeC:\Windows\System32\code.exeACME\emartinez449326
9HR-WS-0012026-02-11T05:51:05.650Z4630344714powershell.exeC:\Windows\System32\powershell.exeACME\emartinez378961
10HR-WS-0012026-02-18T15:05:34.732Z1520415412cmd.exeC:\Windows\System32\cmd.exeACME\emartinez320894
11HR-WS-0012026-02-17T07:07:31.406Z2145157602notepad.exeC:\Windows\System32\notepad.exeACME\emartinez84824
12HR-WS-0012026-02-11T07:26:25.898Z1376113340taskhostw.exeC:\Windows\System32\taskhostw.exeACME\emartinez124299
13HR-WS-0012026-02-11T04:23:03.888Z1100618154RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\emartinez475629
14HR-WS-0012026-02-17T07:17:28.027Z29078916SearchHost.exeC:\Windows\System32\SearchHost.exeACME\emartinez461502
15HR-WS-0012026-02-11T20:08:16.320Z498054lsass.exeC:\Windows\System32\lsass.exeACME\emartinez264858
16HR-WS-0012026-02-14T16:03:53.763Z3189520csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM129833
17HR-WS-0012026-02-15T09:19:41.824Z4896833516winlogon.exeC:\Windows\System32\winlogon.exeACME\emartinez427268
18HR-WS-0012026-02-10T18:14:01.796Z4048842428dwm.exeC:\Windows\System32\dwm.exeACME\emartinez269811
19HR-WS-0012026-02-12T07:59:43.731Z475904595SystemSystemNT AUTHORITY\SYSTEM497791
20HR-WS-0012026-02-18T00:05:25.977Z1138311416smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM436464
21HR-WS-0012026-02-12T05:15:44.444Z333589387services.exeC:\Windows\System32\services.exeACME\emartinez29428
22HR-WS-0012026-02-15T17:45:53.312Z2010418576spoolsv.exeC:\Windows\System32\spoolsv.exeACME\emartinez346429
23HR-WS-0012026-02-12T19:48:20.393Z5345447043MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\emartinez167777
24HR-WS-0012026-02-15T10:42:07.641Z745439665OneDrive.exeC:\Windows\System32\OneDrive.exeACME\emartinez408032
25FIN-WS-0022026-02-19T12:10:36.653Z652814svchost.exeC:\Windows\System32\svchost.exeACME\hbrown308324
26FIN-WS-0022026-02-11T11:51:08.327Z2325131282explorer.exeC:\Windows\System32\explorer.exeACME\hbrown398898
27FIN-WS-0022026-02-13T08:43:40.044Z235352608chrome.exeC:\Windows\System32\chrome.exeACME\hbrown75069
28FIN-WS-0022026-02-13T21:10:38.731Z4391857140msedge.exeC:\Windows\System32\msedge.exeACME\hbrown327213
29FIN-WS-0022026-02-10T11:42:53.693Z388451217outlook.exeC:\Windows\System32\outlook.exeACME\hbrown410881
30FIN-WS-0022026-02-12T06:35:39.917Z5682741518teams.exeC:\Windows\System32\teams.exeACME\hbrown155508
31FIN-WS-0022026-02-13T04:44:54.102Z108528823code.exeC:\Windows\System32\code.exeACME\hbrown52140
32FIN-WS-0022026-02-17T16:37:31.926Z327732964powershell.exeC:\Windows\System32\powershell.exeACME\hbrown283707
33FIN-WS-0022026-02-17T03:22:10.477Z5257551295cmd.exeC:\Windows\System32\cmd.exeACME\hbrown497169
34FIN-WS-0022026-02-19T04:57:44.356Z6462114724notepad.exeC:\Windows\System32\notepad.exeACME\hbrown412728
35FIN-WS-0022026-02-15T11:36:21.898Z637015734taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown355424
36FIN-WS-0022026-02-13T00:21:40.185Z1817213837RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown118551
37FIN-WS-0022026-02-19T18:52:12.933Z6478158408SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown441230
38FIN-WS-0022026-02-16T07:29:35.888Z2247316lsass.exeC:\Windows\System32\lsass.exeACME\hbrown175136
39FIN-WS-0022026-02-15T12:30:13.670Z464473csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM117921
40FIN-WS-0022026-02-15T18:08:20.228Z1621722868winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown122995
41FIN-WS-0022026-02-12T00:49:22.997Z2687132922dwm.exeC:\Windows\System32\dwm.exeACME\hbrown86091
42FIN-WS-0022026-02-16T21:02:33.601Z31725454SystemSystemNT AUTHORITY\SYSTEM176488
43FIN-WS-0022026-02-16T17:17:59.062Z5624210320smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM487267
44FIN-WS-0022026-02-16T18:04:02.344Z4524631983services.exeC:\Windows\System32\services.exeACME\hbrown290973
45FIN-WS-0022026-02-14T13:00:40.226Z2421818958spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown43666
46FIN-WS-0022026-02-20T06:16:01.299Z615625355MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown5580
47FIN-WS-0022026-02-14T16:15:55.881Z416413608OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown23860
48SLS-WS-0032026-02-13T02:57:25.289Z540655svchost.exeC:\Windows\System32\svchost.exeACME\agarcia240655
49SLS-WS-0032026-02-17T04:06:20.563Z5513550893explorer.exeC:\Windows\System32\explorer.exeACME\agarcia227887
50SLS-WS-0032026-02-16T23:10:45.048Z1874347222chrome.exeC:\Windows\System32\chrome.exeACME\agarcia178154
51SLS-WS-0032026-02-12T13:16:16.083Z4386653654msedge.exeC:\Windows\System32\msedge.exeACME\agarcia80907
52SLS-WS-0032026-02-11T15:58:02.304Z5437237785outlook.exeC:\Windows\System32\outlook.exeACME\agarcia397572
53SLS-WS-0032026-02-19T14:09:32.063Z4572016171teams.exeC:\Windows\System32\teams.exeACME\agarcia175452
54SLS-WS-0032026-02-19T05:25:12.738Z297241583code.exeC:\Windows\System32\code.exeACME\agarcia56007
55SLS-WS-0032026-02-13T00:04:18.025Z1581617851powershell.exeC:\Windows\System32\powershell.exeACME\agarcia318607
56SLS-WS-0032026-02-19T21:46:02.023Z2480535605cmd.exeC:\Windows\System32\cmd.exeACME\agarcia463398
57SLS-WS-0032026-02-13T17:33:21.063Z5387038108notepad.exeC:\Windows\System32\notepad.exeACME\agarcia310301
58SLS-WS-0032026-02-16T04:51:17.911Z878953829taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia442395
59SLS-WS-0032026-02-13T07:19:31.506Z5418434613RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia494116
60SLS-WS-0032026-02-13T00:08:39.134Z3846838994SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia143407
61SLS-WS-0032026-02-13T05:30:05.091Z4391719lsass.exeC:\Windows\System32\lsass.exeACME\agarcia312345
62SLS-WS-0032026-02-13T23:57:00.707Z288815csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM245444
63SLS-WS-0032026-02-17T04:40:41.925Z553239715winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia401343
64SLS-WS-0032026-02-15T10:22:26.214Z370819029dwm.exeC:\Windows\System32\dwm.exeACME\agarcia413577
65SLS-WS-0032026-02-20T15:54:27.177Z5478120195SystemSystemNT AUTHORITY\SYSTEM356956
66SLS-WS-0032026-02-19T01:09:30.068Z716229444smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM216991
67SLS-WS-0032026-02-13T00:16:57.691Z1523437390services.exeC:\Windows\System32\services.exeACME\agarcia2017
68SLS-WS-0032026-02-18T19:19:38.007Z6179017328spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia171712
69SLS-WS-0032026-02-13T06:52:31.558Z671257312MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia136602
70SLS-WS-0032026-02-17T13:26:28.900Z2009927667OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia191395
71ENG-WS-0042026-02-18T00:48:38.454Z457010svchost.exeC:\Windows\System32\svchost.exeACME\hbrown84936
72ENG-WS-0042026-02-17T15:49:40.358Z208798923explorer.exeC:\Windows\System32\explorer.exeACME\hbrown269259
73ENG-WS-0042026-02-15T21:32:07.370Z4965833576chrome.exeC:\Windows\System32\chrome.exeACME\hbrown418993
74ENG-WS-0042026-02-14T06:43:35.995Z2591419629msedge.exeC:\Windows\System32\msedge.exeACME\hbrown454318
75ENG-WS-0042026-02-16T04:03:53.150Z122558084outlook.exeC:\Windows\System32\outlook.exeACME\hbrown121262
76ENG-WS-0042026-02-12T22:30:02.013Z587591731teams.exeC:\Windows\System32\teams.exeACME\hbrown44127
77ENG-WS-0042026-02-13T09:26:11.376Z3127236675code.exeC:\Windows\System32\code.exeACME\hbrown41100
78ENG-WS-0042026-02-11T08:28:45.943Z1567139156powershell.exeC:\Windows\System32\powershell.exeACME\hbrown408322
79ENG-WS-0042026-02-16T16:20:27.761Z2873046165cmd.exeC:\Windows\System32\cmd.exeACME\hbrown498274
80ENG-WS-0042026-02-13T01:09:29.273Z3281822397notepad.exeC:\Windows\System32\notepad.exeACME\hbrown115732
81ENG-WS-0042026-02-15T09:55:08.539Z4042014167taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown254628
82ENG-WS-0042026-02-18T03:06:03.501Z587848783RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown232391
83ENG-WS-0042026-02-20T17:39:33.314Z484538094SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown132808
84ENG-WS-0042026-02-12T00:48:26.473Z548785lsass.exeC:\Windows\System32\lsass.exeACME\hbrown61624
85ENG-WS-0042026-02-20T10:40:20.754Z1085811csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM418236
86ENG-WS-0042026-02-12T10:53:26.173Z19847061winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown277352
87ENG-WS-0042026-02-13T04:45:48.980Z4449413899dwm.exeC:\Windows\System32\dwm.exeACME\hbrown52373
88ENG-WS-0042026-02-15T06:42:06.087Z1229218972SystemSystemNT AUTHORITY\SYSTEM95620
89ENG-WS-0042026-02-19T05:52:09.133Z1514556785smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM480094
90ENG-WS-0042026-02-14T23:08:12.655Z96832955services.exeC:\Windows\System32\services.exeACME\hbrown480223
91ENG-WS-0042026-02-15T08:45:14.931Z461139369spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown114550
92ENG-WS-0042026-02-10T20:19:27.210Z5404231393MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown354808
93ENG-WS-0042026-02-14T19:23:57.024Z350556192OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown85536
94LEG-WS-0052026-02-19T17:39:55.046Z3660618svchost.exeC:\Windows\System32\svchost.exeACME\idavis492809
95LEG-WS-0052026-02-12T16:31:42.550Z2998713845explorer.exeC:\Windows\System32\explorer.exeACME\idavis196491
96LEG-WS-0052026-02-20T16:03:29.217Z105396455chrome.exeC:\Windows\System32\chrome.exeACME\idavis279409
97LEG-WS-0052026-02-12T07:17:50.711Z2247834797msedge.exeC:\Windows\System32\msedge.exeACME\idavis336651
98LEG-WS-0052026-02-14T01:05:40.094Z3024924066outlook.exeC:\Windows\System32\outlook.exeACME\idavis488008
99LEG-WS-0052026-02-18T12:20:12.774Z3588758593teams.exeC:\Windows\System32\teams.exeACME\idavis94989
100LEG-WS-0052026-02-20T04:02:48.315Z6362627301code.exeC:\Windows\System32\code.exeACME\idavis84447
101LEG-WS-0052026-02-15T19:51:43.075Z621955841powershell.exeC:\Windows\System32\powershell.exeACME\idavis148426
102LEG-WS-0052026-02-18T07:28:05.990Z5253550623cmd.exeC:\Windows\System32\cmd.exeACME\idavis461883
103LEG-WS-0052026-02-10T23:14:03.996Z665947761notepad.exeC:\Windows\System32\notepad.exeACME\idavis275393
104LEG-WS-0052026-02-15T14:51:00.062Z2281950249taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis371082
105LEG-WS-0052026-02-15T16:58:24.079Z4525938007RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis373268
106LEG-WS-0052026-02-15T19:56:32.549Z438786216SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis479135
107LEG-WS-0052026-02-16T19:05:19.309Z663420lsass.exeC:\Windows\System32\lsass.exeACME\idavis96100
108LEG-WS-0052026-02-15T12:13:44.562Z368894csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM467014
109LEG-WS-0052026-02-12T18:47:13.414Z4668136818winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis71752
110LEG-WS-0052026-02-10T08:31:02.897Z5121942208dwm.exeC:\Windows\System32\dwm.exeACME\idavis134825
111LEG-WS-0052026-02-17T04:30:20.732Z1253213238SystemSystemNT AUTHORITY\SYSTEM309426
112LEG-WS-0052026-02-19T15:17:46.678Z4893743085smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM168355
113LEG-WS-0052026-02-18T18:41:20.923Z2234312425services.exeC:\Windows\System32\services.exeACME\idavis103504
114LEG-WS-0052026-02-16T04:57:34.336Z1239318698spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis238916
115LEG-WS-0052026-02-18T08:09:48.017Z467806574MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis234233
116LEG-WS-0052026-02-10T11:08:43.195Z846341089OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis27493
117MKT-WS-0062026-02-12T06:18:39.522Z371347svchost.exeC:\Windows\System32\svchost.exeACME\svc_web78784
118MKT-WS-0062026-02-12T08:59:37.235Z1825550901explorer.exeC:\Windows\System32\explorer.exeACME\svc_web329567
119MKT-WS-0062026-02-19T01:05:25.454Z6374450703chrome.exeC:\Windows\System32\chrome.exeACME\svc_web17767
120MKT-WS-0062026-02-16T17:13:37.859Z568481700msedge.exeC:\Windows\System32\msedge.exeACME\svc_web43516
121MKT-WS-0062026-02-20T09:26:50.445Z4470948627outlook.exeC:\Windows\System32\outlook.exeACME\svc_web241958
122MKT-WS-0062026-02-14T06:02:42.015Z148437413teams.exeC:\Windows\System32\teams.exeACME\svc_web117180
123MKT-WS-0062026-02-17T01:59:08.142Z886719327code.exeC:\Windows\System32\code.exeACME\svc_web3016
124MKT-WS-0062026-02-17T03:50:00.299Z4320033901powershell.exeC:\Windows\System32\powershell.exeACME\svc_web349645
125MKT-WS-0062026-02-20T08:10:53.797Z3273350228cmd.exeC:\Windows\System32\cmd.exeACME\svc_web161341
126MKT-WS-0062026-02-15T13:40:53.900Z1677831565notepad.exeC:\Windows\System32\notepad.exeACME\svc_web440906
127MKT-WS-0062026-02-10T15:06:02.725Z3764148382taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_web255796
128MKT-WS-0062026-02-11T17:50:28.126Z788758793RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_web478500
129MKT-WS-0062026-02-14T03:27:03.886Z5940411045SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_web325780
130MKT-WS-0062026-02-20T03:36:30.742Z5326118lsass.exeC:\Windows\System32\lsass.exeACME\svc_web227345
131MKT-WS-0062026-02-20T14:10:02.120Z6134620csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM27159
132MKT-WS-0062026-02-19T04:51:16.331Z970019976winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_web299292
133MKT-WS-0062026-02-19T01:00:49.917Z6493233072dwm.exeC:\Windows\System32\dwm.exeACME\svc_web346553
134MKT-WS-0062026-02-18T07:18:32.620Z1184130951SystemSystemNT AUTHORITY\SYSTEM148339
135MKT-WS-0062026-02-16T19:52:17.815Z1916342793smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM93551
136MKT-WS-0062026-02-14T07:58:30.964Z254528978services.exeC:\Windows\System32\services.exeACME\svc_web306635
137MKT-WS-0062026-02-11T03:16:23.572Z4128953488spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_web76178
138MKT-WS-0062026-02-15T23:06:30.255Z5358559476MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_web45724
139MKT-WS-0062026-02-16T05:22:07.229Z599950839OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_web259500
140EXEC-WS-0072026-02-14T13:25:20.961Z709514svchost.exeC:\Windows\System32\svchost.exeACME\emartinez449012
141EXEC-WS-0072026-02-20T00:48:20.477Z600083792explorer.exeC:\Windows\System32\explorer.exeACME\emartinez461992
142EXEC-WS-0072026-02-10T21:09:36.852Z351523266chrome.exeC:\Windows\System32\chrome.exeACME\emartinez145751
143EXEC-WS-0072026-02-18T03:51:25.181Z195481465msedge.exeC:\Windows\System32\msedge.exeACME\emartinez245746
144EXEC-WS-0072026-02-10T22:46:25.892Z2877725649outlook.exeC:\Windows\System32\outlook.exeACME\emartinez349869
145EXEC-WS-0072026-02-12T15:34:04.788Z568078387teams.exeC:\Windows\System32\teams.exeACME\emartinez204952
146EXEC-WS-0072026-02-19T02:54:09.301Z911822349code.exeC:\Windows\System32\code.exeACME\emartinez193905
147EXEC-WS-0072026-02-20T13:43:43.861Z61361705powershell.exeC:\Windows\System32\powershell.exeACME\emartinez11167
148EXEC-WS-0072026-02-19T07:04:04.157Z1422925392cmd.exeC:\Windows\System32\cmd.exeACME\emartinez394450
149EXEC-WS-0072026-02-15T05:52:08.797Z3532122959notepad.exeC:\Windows\System32\notepad.exeACME\emartinez164735
150EXEC-WS-0072026-02-18T10:40:54.911Z1577338476taskhostw.exeC:\Windows\System32\taskhostw.exeACME\emartinez249948
151EXEC-WS-0072026-02-16T01:10:21.530Z4223315617RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\emartinez450660
152EXEC-WS-0072026-02-20T10:52:59.349Z5239529658SearchHost.exeC:\Windows\System32\SearchHost.exeACME\emartinez429389
153EXEC-WS-0072026-02-18T02:16:18.007Z521463lsass.exeC:\Windows\System32\lsass.exeACME\emartinez287696
154EXEC-WS-0072026-02-15T13:43:47.928Z1776012csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM454942
155EXEC-WS-0072026-02-19T07:14:49.554Z2555414968winlogon.exeC:\Windows\System32\winlogon.exeACME\emartinez486453
156EXEC-WS-0072026-02-12T03:30:32.581Z116577122dwm.exeC:\Windows\System32\dwm.exeACME\emartinez423040
157EXEC-WS-0072026-02-11T23:44:02.999Z519735224SystemSystemNT AUTHORITY\SYSTEM214434
158EXEC-WS-0072026-02-15T06:38:41.199Z1279356020smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM71330
159EXEC-WS-0072026-02-11T12:18:10.784Z2174054191services.exeC:\Windows\System32\services.exeACME\emartinez74081
160EXEC-WS-0072026-02-15T18:19:25.281Z3914343600spoolsv.exeC:\Windows\System32\spoolsv.exeACME\emartinez17426
161EXEC-WS-0072026-02-12T11:23:41.365Z4885457148MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\emartinez396659
162EXEC-WS-0072026-02-10T21:10:46.253Z472915764OneDrive.exeC:\Windows\System32\OneDrive.exeACME\emartinez200594
163IT-WS-0082026-02-10T17:15:51.709Z171412svchost.exeC:\Windows\System32\svchost.exeACME\gwhite411189
164IT-WS-0082026-02-13T09:42:19.032Z2987644231explorer.exeC:\Windows\System32\explorer.exeACME\gwhite379927
165IT-WS-0082026-02-17T09:07:20.044Z6122411530chrome.exeC:\Windows\System32\chrome.exeACME\gwhite84946
166IT-WS-0082026-02-16T07:56:22.793Z5670810088msedge.exeC:\Windows\System32\msedge.exeACME\gwhite171946
167IT-WS-0082026-02-19T14:28:23.707Z1853855730outlook.exeC:\Windows\System32\outlook.exeACME\gwhite207234
168IT-WS-0082026-02-18T04:51:36.746Z2216353633teams.exeC:\Windows\System32\teams.exeACME\gwhite353556
169IT-WS-0082026-02-14T06:00:53.426Z1835632495code.exeC:\Windows\System32\code.exeACME\gwhite426612
170IT-WS-0082026-02-16T14:28:39.385Z513728444powershell.exeC:\Windows\System32\powershell.exeACME\gwhite156682
171IT-WS-0082026-02-19T16:50:39.897Z2438623293cmd.exeC:\Windows\System32\cmd.exeACME\gwhite442670
172IT-WS-0082026-02-14T08:13:09.634Z360913620notepad.exeC:\Windows\System32\notepad.exeACME\gwhite119149
173IT-WS-0082026-02-19T23:21:18.677Z2336549112taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite467311
174IT-WS-0082026-02-19T00:15:09.397Z1859010491RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite107991
175IT-WS-0082026-02-20T15:02:32.689Z2899910533SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite135051
176IT-WS-0082026-02-15T00:58:25.880Z2873814lsass.exeC:\Windows\System32\lsass.exeACME\gwhite202337
177IT-WS-0082026-02-12T01:50:27.282Z489475csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM478918
178IT-WS-0082026-02-14T09:27:36.502Z4584131677winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite259503
179IT-WS-0082026-02-14T22:03:13.784Z2003142306dwm.exeC:\Windows\System32\dwm.exeACME\gwhite7246
180IT-WS-0082026-02-14T00:54:55.440Z1828552839SystemSystemNT AUTHORITY\SYSTEM395081
181IT-WS-0082026-02-18T05:01:55.655Z2207610987smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM155293
182IT-WS-0082026-02-12T02:40:29.574Z4755249698services.exeC:\Windows\System32\services.exeACME\gwhite23691
183IT-WS-0082026-02-18T11:25:57.643Z2369439249spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite137718
184IT-WS-0082026-02-14T03:33:18.797Z636759754MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite317845
185IT-WS-0082026-02-10T21:08:58.865Z2958434991OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite143532
186HR-WS-0092026-02-10T18:00:01.505Z4056013svchost.exeC:\Windows\System32\svchost.exeACME\agarcia340138
187HR-WS-0092026-02-19T04:37:06.088Z1248919108explorer.exeC:\Windows\System32\explorer.exeACME\agarcia422343
188HR-WS-0092026-02-15T09:27:16.774Z3362640887chrome.exeC:\Windows\System32\chrome.exeACME\agarcia496736
189HR-WS-0092026-02-11T11:07:54.421Z146564628msedge.exeC:\Windows\System32\msedge.exeACME\agarcia25344
190HR-WS-0092026-02-14T07:01:08.176Z815122905outlook.exeC:\Windows\System32\outlook.exeACME\agarcia180971
191HR-WS-0092026-02-19T13:01:57.427Z1547158294teams.exeC:\Windows\System32\teams.exeACME\agarcia317160
192HR-WS-0092026-02-19T23:44:43.324Z2438212232code.exeC:\Windows\System32\code.exeACME\agarcia51286
193HR-WS-0092026-02-16T23:47:43.598Z5070948737powershell.exeC:\Windows\System32\powershell.exeACME\agarcia498231
194HR-WS-0092026-02-13T05:59:23.287Z4478520937cmd.exeC:\Windows\System32\cmd.exeACME\agarcia97262
195HR-WS-0092026-02-11T07:20:49.395Z16816416notepad.exeC:\Windows\System32\notepad.exeACME\agarcia13037
196HR-WS-0092026-02-13T01:16:42.166Z4444148683taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia441750
197HR-WS-0092026-02-16T16:45:59.056Z4199830594RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia414660
198HR-WS-0092026-02-15T19:10:10.778Z408446220SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia440241
199HR-WS-0092026-02-15T20:48:21.388Z360171lsass.exeC:\Windows\System32\lsass.exeACME\agarcia269315
200HR-WS-0092026-02-15T19:49:31.902Z1589111csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM393375
201HR-WS-0092026-02-14T00:04:23.109Z2429758585winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia264560
202HR-WS-0092026-02-14T18:47:22.796Z4236314806dwm.exeC:\Windows\System32\dwm.exeACME\agarcia169156
203HR-WS-0092026-02-16T04:27:32.628Z1733041626SystemSystemNT AUTHORITY\SYSTEM196613
204HR-WS-0092026-02-15T00:14:15.929Z5026940268smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM297327
205HR-WS-0092026-02-17T17:49:44.755Z5069049987services.exeC:\Windows\System32\services.exeACME\agarcia137308
206HR-WS-0092026-02-17T23:24:45.671Z881523000spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia484404
207HR-WS-0092026-02-16T09:13:36.567Z1071841521MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia31341
208HR-WS-0092026-02-19T04:02:09.825Z4802150474OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia112695
209FIN-WS-0102026-02-13T17:39:14.828Z5234916svchost.exeC:\Windows\System32\svchost.exeACME\bwilson271101
210FIN-WS-0102026-02-20T12:53:15.999Z1686538451explorer.exeC:\Windows\System32\explorer.exeACME\bwilson465649
211FIN-WS-0102026-02-13T17:57:02.567Z4413334702chrome.exeC:\Windows\System32\chrome.exeACME\bwilson424019
212FIN-WS-0102026-02-19T22:28:01.434Z4550258415msedge.exeC:\Windows\System32\msedge.exeACME\bwilson274962
213FIN-WS-0102026-02-19T10:30:02.388Z5658242100outlook.exeC:\Windows\System32\outlook.exeACME\bwilson476763
214FIN-WS-0102026-02-19T23:36:06.899Z5266331636teams.exeC:\Windows\System32\teams.exeACME\bwilson401035
215FIN-WS-0102026-02-10T22:10:54.230Z2090315341code.exeC:\Windows\System32\code.exeACME\bwilson269240
216FIN-WS-0102026-02-15T20:29:05.760Z711121959powershell.exeC:\Windows\System32\powershell.exeACME\bwilson285887
217FIN-WS-0102026-02-20T08:51:13.781Z5636426580cmd.exeC:\Windows\System32\cmd.exeACME\bwilson274932
218FIN-WS-0102026-02-19T23:11:53.884Z4431451069notepad.exeC:\Windows\System32\notepad.exeACME\bwilson313164
219FIN-WS-0102026-02-11T11:04:37.041Z1724024553taskhostw.exeC:\Windows\System32\taskhostw.exeACME\bwilson444632
220FIN-WS-0102026-02-16T14:36:44.293Z6263358769RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\bwilson117650
221FIN-WS-0102026-02-19T06:05:06.194Z4462059449SearchHost.exeC:\Windows\System32\SearchHost.exeACME\bwilson422268
222FIN-WS-0102026-02-15T08:35:02.567Z1867314lsass.exeC:\Windows\System32\lsass.exeACME\bwilson339559
223FIN-WS-0102026-02-16T18:13:38.530Z4688519csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM81923
224FIN-WS-0102026-02-12T02:46:10.640Z3051922133winlogon.exeC:\Windows\System32\winlogon.exeACME\bwilson231241
225FIN-WS-0102026-02-10T13:04:05.021Z590657014dwm.exeC:\Windows\System32\dwm.exeACME\bwilson5451
226FIN-WS-0102026-02-17T22:02:48.421Z475389726SystemSystemNT AUTHORITY\SYSTEM327492
227FIN-WS-0102026-02-14T04:02:17.295Z6310252003smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM322116
228FIN-WS-0102026-02-12T07:37:59.954Z4208425374services.exeC:\Windows\System32\services.exeACME\bwilson39684
229FIN-WS-0102026-02-16T03:52:23.180Z5263450325spoolsv.exeC:\Windows\System32\spoolsv.exeACME\bwilson255748
230FIN-WS-0102026-02-10T21:53:49.222Z2309429748MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\bwilson107931
231FIN-WS-0102026-02-10T18:23:23.971Z5348811970OneDrive.exeC:\Windows\System32\OneDrive.exeACME\bwilson377634
232SLS-WS-0112026-02-11T00:16:31.282Z146001svchost.exeC:\Windows\System32\svchost.exeACME\agarcia164478
233SLS-WS-0112026-02-13T04:23:54.068Z5298726796explorer.exeC:\Windows\System32\explorer.exeACME\agarcia57830
234SLS-WS-0112026-02-11T23:25:43.015Z4084831713chrome.exeC:\Windows\System32\chrome.exeACME\agarcia296926
235SLS-WS-0112026-02-13T08:14:36.374Z5457743124msedge.exeC:\Windows\System32\msedge.exeACME\agarcia345886
236SLS-WS-0112026-02-14T18:50:31.887Z385813949outlook.exeC:\Windows\System32\outlook.exeACME\agarcia173046
237SLS-WS-0112026-02-14T08:54:04.547Z348721031teams.exeC:\Windows\System32\teams.exeACME\agarcia410310
238SLS-WS-0112026-02-11T22:25:24.306Z4728714657code.exeC:\Windows\System32\code.exeACME\agarcia383757
239SLS-WS-0112026-02-17T20:46:24.839Z5069550770powershell.exeC:\Windows\System32\powershell.exeACME\agarcia468929
240SLS-WS-0112026-02-10T17:57:02.296Z3885917543cmd.exeC:\Windows\System32\cmd.exeACME\agarcia48940
241SLS-WS-0112026-02-19T00:07:07.185Z299885186notepad.exeC:\Windows\System32\notepad.exeACME\agarcia464835
242SLS-WS-0112026-02-12T22:06:22.847Z231949279taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia371644
243SLS-WS-0112026-02-16T18:46:37.919Z318541932RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia54156
244SLS-WS-0112026-02-14T15:01:37.370Z3477017432SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia241604
245SLS-WS-0112026-02-16T01:58:20.158Z388352lsass.exeC:\Windows\System32\lsass.exeACME\agarcia250633
246SLS-WS-0112026-02-15T06:56:59.217Z525088csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM334980
247SLS-WS-0112026-02-18T16:29:24.385Z701927372winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia417651
248SLS-WS-0112026-02-13T22:15:32.652Z948429422dwm.exeC:\Windows\System32\dwm.exeACME\agarcia89834
249SLS-WS-0112026-02-14T15:26:41.962Z3223420385SystemSystemNT AUTHORITY\SYSTEM25827
250SLS-WS-0112026-02-10T12:03:21.670Z56272926smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM210589
251SLS-WS-0112026-02-19T20:01:32.903Z4186340028services.exeC:\Windows\System32\services.exeACME\agarcia428262
252SLS-WS-0112026-02-13T09:00:50.844Z2910130944spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia1873
253SLS-WS-0112026-02-15T03:29:14.548Z3905445256MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia34048
254SLS-WS-0112026-02-11T17:03:58.631Z3376114217OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia331178
255ENG-WS-0122026-02-18T01:55:02.222Z2619813svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql38430
256ENG-WS-0122026-02-14T06:28:54.747Z35763669explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql2718
257ENG-WS-0122026-02-13T20:40:59.097Z3461459764chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql128779
258ENG-WS-0122026-02-10T18:15:13.177Z5323429838msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql262972
259ENG-WS-0122026-02-10T13:10:13.572Z418654452outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql4259
260ENG-WS-0122026-02-18T03:34:25.432Z603419908teams.exeC:\Windows\System32\teams.exeACME\svc_sql70444
261ENG-WS-0122026-02-12T02:19:06.647Z476077749code.exeC:\Windows\System32\code.exeACME\svc_sql208519
262ENG-WS-0122026-02-12T14:32:39.699Z3677454414powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql495905
263ENG-WS-0122026-02-13T15:39:27.914Z403422841cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql443978
264ENG-WS-0122026-02-11T14:28:25.204Z489372443notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql437354
265ENG-WS-0122026-02-19T20:36:55.189Z512349997taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql287314
266ENG-WS-0122026-02-17T23:29:04.639Z596504567RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql297924
267ENG-WS-0122026-02-13T03:09:08.026Z1294051854SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql309316
268ENG-WS-0122026-02-18T11:43:28.954Z74331lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql481216
269ENG-WS-0122026-02-16T17:59:56.225Z3045614csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM473405
270ENG-WS-0122026-02-11T00:11:39.308Z3135155352winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql440796
271ENG-WS-0122026-02-13T06:24:11.241Z643737301dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql160887
272ENG-WS-0122026-02-18T13:52:13.813Z53005445SystemSystemNT AUTHORITY\SYSTEM493926
273ENG-WS-0122026-02-12T17:20:34.834Z5101827988smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM95119
274ENG-WS-0122026-02-18T01:55:16.158Z367119918services.exeC:\Windows\System32\services.exeACME\svc_sql191236
275ENG-WS-0122026-02-14T07:17:00.745Z744437286spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql406303
276ENG-WS-0122026-02-20T10:29:06.649Z895559875MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql310392
277ENG-WS-0122026-02-15T14:43:02.556Z6150021684OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql203475
278ENG-WS-0122026-02-11T20:27:48.469Z1412358967discord.exeC:\Users\svc_sql\AppData\Local\discord\discord.exeACME\svc_sql304112
279LEG-WS-0132026-02-18T19:11:08.615Z569615svchost.exeC:\Windows\System32\svchost.exeACME\jsmith133766
280LEG-WS-0132026-02-18T12:40:24.053Z5605419854explorer.exeC:\Windows\System32\explorer.exeACME\jsmith313010
281LEG-WS-0132026-02-13T17:42:35.509Z2569020818chrome.exeC:\Windows\System32\chrome.exeACME\jsmith83362
282LEG-WS-0132026-02-19T22:53:15.389Z4637518149msedge.exeC:\Windows\System32\msedge.exeACME\jsmith83170
283LEG-WS-0132026-02-11T04:54:25.620Z5915147023outlook.exeC:\Windows\System32\outlook.exeACME\jsmith272739
284LEG-WS-0132026-02-11T19:28:49.857Z4357452054teams.exeC:\Windows\System32\teams.exeACME\jsmith171731
285LEG-WS-0132026-02-13T01:50:37.081Z5474552495code.exeC:\Windows\System32\code.exeACME\jsmith276209
286LEG-WS-0132026-02-17T13:49:44.478Z340321814powershell.exeC:\Windows\System32\powershell.exeACME\jsmith497802
287LEG-WS-0132026-02-19T01:16:52.502Z2272840580cmd.exeC:\Windows\System32\cmd.exeACME\jsmith173349
288LEG-WS-0132026-02-12T02:39:26.392Z22957780notepad.exeC:\Windows\System32\notepad.exeACME\jsmith75289
289LEG-WS-0132026-02-17T02:42:43.447Z6356416604taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith73542
290LEG-WS-0132026-02-12T21:16:37.113Z2755514207RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith197526
291LEG-WS-0132026-02-11T12:50:31.741Z1185914986SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith243740
292LEG-WS-0132026-02-13T07:52:14.367Z4134511lsass.exeC:\Windows\System32\lsass.exeACME\jsmith233090
293LEG-WS-0132026-02-19T02:57:57.793Z327194csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM102890
294LEG-WS-0132026-02-11T22:38:34.373Z10168256winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith211064
295LEG-WS-0132026-02-12T11:35:22.358Z600445333dwm.exeC:\Windows\System32\dwm.exeACME\jsmith421493
296LEG-WS-0132026-02-10T11:35:11.773Z418848636SystemSystemNT AUTHORITY\SYSTEM56528
297LEG-WS-0132026-02-14T15:49:48.775Z5109634441smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM224009
298LEG-WS-0132026-02-18T12:27:41.246Z5460648074services.exeC:\Windows\System32\services.exeACME\jsmith243370
299LEG-WS-0132026-02-15T17:30:56.418Z1845420234spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith88693
300LEG-WS-0132026-02-18T02:23:24.464Z1175733541MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith291814
301LEG-WS-0132026-02-19T20:00:17.670Z81232802OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith323430
302LEG-WS-0132026-02-16T17:02:05.312Z250982150steam.exeC:\Users\jsmith\AppData\Local\steam\steam.exeACME\jsmith353358
303MKT-WS-0142026-02-19T08:44:27.057Z2745513svchost.exeC:\Windows\System32\svchost.exeACME\fthompson398247
304MKT-WS-0142026-02-12T03:39:31.236Z5493528738explorer.exeC:\Windows\System32\explorer.exeACME\fthompson199384
305MKT-WS-0142026-02-11T23:09:52.911Z217341569chrome.exeC:\Windows\System32\chrome.exeACME\fthompson416279
306MKT-WS-0142026-02-19T04:14:58.681Z4656839990msedge.exeC:\Windows\System32\msedge.exeACME\fthompson496723
307MKT-WS-0142026-02-19T03:05:08.267Z4274720539outlook.exeC:\Windows\System32\outlook.exeACME\fthompson314662
308MKT-WS-0142026-02-20T13:11:10.245Z469259536teams.exeC:\Windows\System32\teams.exeACME\fthompson22815
309MKT-WS-0142026-02-17T18:41:33.691Z1694352005code.exeC:\Windows\System32\code.exeACME\fthompson65516
310MKT-WS-0142026-02-13T10:27:04.703Z6458627299powershell.exeC:\Windows\System32\powershell.exeACME\fthompson313161
311MKT-WS-0142026-02-13T00:15:28.497Z2157256783cmd.exeC:\Windows\System32\cmd.exeACME\fthompson436420
312MKT-WS-0142026-02-16T23:29:15.046Z6367621119notepad.exeC:\Windows\System32\notepad.exeACME\fthompson445989
313MKT-WS-0142026-02-13T12:10:15.638Z1744648131taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson214427
314MKT-WS-0142026-02-15T03:27:15.395Z2265530756RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson497308
315MKT-WS-0142026-02-17T11:57:59.655Z783516164SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson472989
316MKT-WS-0142026-02-11T11:48:54.509Z4160215lsass.exeC:\Windows\System32\lsass.exeACME\fthompson104581
317MKT-WS-0142026-02-15T04:23:50.990Z167896csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM392342
318MKT-WS-0142026-02-16T22:54:10.956Z3824213986winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson92519
319MKT-WS-0142026-02-19T04:13:38.114Z3425259667dwm.exeC:\Windows\System32\dwm.exeACME\fthompson404596
320MKT-WS-0142026-02-20T02:19:15.229Z141889669SystemSystemNT AUTHORITY\SYSTEM408317
321MKT-WS-0142026-02-15T05:06:35.686Z1147252910smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM199005
322MKT-WS-0142026-02-13T00:15:52.770Z2803421098services.exeC:\Windows\System32\services.exeACME\fthompson385659
323MKT-WS-0142026-02-13T08:22:58.122Z3511541490spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson262968
324MKT-WS-0142026-02-18T08:07:11.530Z5654220096MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson404958
325MKT-WS-0142026-02-20T13:11:41.444Z5246319081OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson362045
326EXEC-WS-0152026-02-12T07:16:34.268Z181312svchost.exeC:\Windows\System32\svchost.exeACME\admin383512
327EXEC-WS-0152026-02-10T14:58:42.656Z207047291explorer.exeC:\Windows\System32\explorer.exeACME\admin338246
328EXEC-WS-0152026-02-13T11:03:46.370Z666155791chrome.exeC:\Windows\System32\chrome.exeACME\admin202741
329EXEC-WS-0152026-02-18T05:12:05.406Z2734421488msedge.exeC:\Windows\System32\msedge.exeACME\admin468943
330EXEC-WS-0152026-02-13T09:28:16.971Z6334037026outlook.exeC:\Windows\System32\outlook.exeACME\admin472422
331EXEC-WS-0152026-02-16T02:31:55.292Z6009213288teams.exeC:\Windows\System32\teams.exeACME\admin291024
332EXEC-WS-0152026-02-11T18:06:45.274Z1138514195code.exeC:\Windows\System32\code.exeACME\admin131486
333EXEC-WS-0152026-02-20T07:06:16.524Z2013151838powershell.exeC:\Windows\System32\powershell.exeACME\admin380212
334EXEC-WS-0152026-02-13T23:16:38.036Z1613614410cmd.exeC:\Windows\System32\cmd.exeACME\admin219775
335EXEC-WS-0152026-02-12T00:28:40.291Z3383153122notepad.exeC:\Windows\System32\notepad.exeACME\admin70495
336EXEC-WS-0152026-02-15T18:57:50.054Z5083749997taskhostw.exeC:\Windows\System32\taskhostw.exeACME\admin385997
337EXEC-WS-0152026-02-18T19:59:31.154Z5024627323RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\admin404917
338EXEC-WS-0152026-02-14T04:08:49.061Z3183744064SearchHost.exeC:\Windows\System32\SearchHost.exeACME\admin318109
339EXEC-WS-0152026-02-17T06:08:05.088Z591895lsass.exeC:\Windows\System32\lsass.exeACME\admin413756
340EXEC-WS-0152026-02-19T02:19:08.020Z641798csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM323328
341EXEC-WS-0152026-02-11T12:15:37.637Z35959147winlogon.exeC:\Windows\System32\winlogon.exeACME\admin123057
342EXEC-WS-0152026-02-15T04:40:53.496Z5314941751dwm.exeC:\Windows\System32\dwm.exeACME\admin209019
343EXEC-WS-0152026-02-16T16:52:21.003Z489852026SystemSystemNT AUTHORITY\SYSTEM472986
344EXEC-WS-0152026-02-15T02:13:59.320Z2404844139smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM5233
345EXEC-WS-0152026-02-19T11:09:43.443Z660720462services.exeC:\Windows\System32\services.exeACME\admin61421
346EXEC-WS-0152026-02-14T01:02:01.950Z607445276spoolsv.exeC:\Windows\System32\spoolsv.exeACME\admin405792
347EXEC-WS-0152026-02-16T23:10:37.489Z347247174MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\admin440234
348EXEC-WS-0152026-02-11T01:17:00.230Z1017713984OneDrive.exeC:\Windows\System32\OneDrive.exeACME\admin128609
349IT-WS-0162026-02-11T12:17:19.240Z360673svchost.exeC:\Windows\System32\svchost.exeACME\bwilson286948
350IT-WS-0162026-02-17T20:36:19.420Z3042057463explorer.exeC:\Windows\System32\explorer.exeACME\bwilson213366
351IT-WS-0162026-02-16T08:12:50.011Z222432659chrome.exeC:\Windows\System32\chrome.exeACME\bwilson34686
352IT-WS-0162026-02-19T16:35:24.801Z2476513337msedge.exeC:\Windows\System32\msedge.exeACME\bwilson236161
353IT-WS-0162026-02-14T03:04:21.173Z5780341884outlook.exeC:\Windows\System32\outlook.exeACME\bwilson194551
354IT-WS-0162026-02-18T21:04:05.474Z5822928881teams.exeC:\Windows\System32\teams.exeACME\bwilson318481
355IT-WS-0162026-02-18T05:55:43.794Z4946251582code.exeC:\Windows\System32\code.exeACME\bwilson64340
356IT-WS-0162026-02-14T04:39:38.932Z5723152691powershell.exeC:\Windows\System32\powershell.exeACME\bwilson21194
357IT-WS-0162026-02-16T03:09:56.255Z4306139657cmd.exeC:\Windows\System32\cmd.exeACME\bwilson49508
358IT-WS-0162026-02-17T01:06:56.344Z41712094notepad.exeC:\Windows\System32\notepad.exeACME\bwilson449268
359IT-WS-0162026-02-12T15:14:23.864Z1745419426taskhostw.exeC:\Windows\System32\taskhostw.exeACME\bwilson19632
360IT-WS-0162026-02-15T10:01:49.655Z921830209RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\bwilson73546
361IT-WS-0162026-02-17T09:20:01.416Z492521026SearchHost.exeC:\Windows\System32\SearchHost.exeACME\bwilson177131
362IT-WS-0162026-02-13T08:16:30.496Z2611619lsass.exeC:\Windows\System32\lsass.exeACME\bwilson235102
363IT-WS-0162026-02-16T21:07:38.074Z4225514csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM291274
364IT-WS-0162026-02-16T22:13:32.564Z65854770winlogon.exeC:\Windows\System32\winlogon.exeACME\bwilson91795
365IT-WS-0162026-02-12T09:25:04.023Z2517756690dwm.exeC:\Windows\System32\dwm.exeACME\bwilson87511
366IT-WS-0162026-02-18T18:27:47.162Z5720325893SystemSystemNT AUTHORITY\SYSTEM219747
367IT-WS-0162026-02-17T13:44:38.520Z4837314932smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM53692
368IT-WS-0162026-02-12T21:37:15.617Z584820376services.exeC:\Windows\System32\services.exeACME\bwilson392459
369IT-WS-0162026-02-13T20:55:34.834Z412430167spoolsv.exeC:\Windows\System32\spoolsv.exeACME\bwilson451673
370IT-WS-0162026-02-19T08:08:51.713Z3920733060MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\bwilson462350
371IT-WS-0162026-02-20T16:07:31.676Z5653531278OneDrive.exeC:\Windows\System32\OneDrive.exeACME\bwilson145895
372IT-WS-0162026-02-14T19:58:06.617Z291258883qbittorrent.exeC:\Users\bwilson\AppData\Local\qbittorrent\qbittorrent.exeACME\bwilson360336
373HR-WS-0172026-02-17T07:33:56.532Z211413svchost.exeC:\Windows\System32\svchost.exeACME\cjohnson420874
374HR-WS-0172026-02-14T07:21:57.589Z1696047976explorer.exeC:\Windows\System32\explorer.exeACME\cjohnson59753
375HR-WS-0172026-02-15T14:33:10.828Z1853413125chrome.exeC:\Windows\System32\chrome.exeACME\cjohnson106813
376HR-WS-0172026-02-17T21:57:11.621Z5473959420msedge.exeC:\Windows\System32\msedge.exeACME\cjohnson458245
377HR-WS-0172026-02-14T15:15:26.888Z489884244outlook.exeC:\Windows\System32\outlook.exeACME\cjohnson158553
378HR-WS-0172026-02-11T17:35:27.693Z4654347562teams.exeC:\Windows\System32\teams.exeACME\cjohnson284252
379HR-WS-0172026-02-19T00:16:36.780Z4769639098code.exeC:\Windows\System32\code.exeACME\cjohnson477224
380HR-WS-0172026-02-10T20:46:40.691Z2045757252powershell.exeC:\Windows\System32\powershell.exeACME\cjohnson280103
381HR-WS-0172026-02-15T06:38:36.829Z1873743133cmd.exeC:\Windows\System32\cmd.exeACME\cjohnson130064
382HR-WS-0172026-02-16T09:59:21.846Z3664551905notepad.exeC:\Windows\System32\notepad.exeACME\cjohnson257175
383HR-WS-0172026-02-11T17:23:44.532Z5758322123taskhostw.exeC:\Windows\System32\taskhostw.exeACME\cjohnson267519
384HR-WS-0172026-02-15T09:04:50.171Z6227038729RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\cjohnson432825
385HR-WS-0172026-02-13T12:17:46.593Z1071242809SearchHost.exeC:\Windows\System32\SearchHost.exeACME\cjohnson429284
386HR-WS-0172026-02-19T20:07:24.298Z3988815lsass.exeC:\Windows\System32\lsass.exeACME\cjohnson292450
387HR-WS-0172026-02-15T23:47:59.921Z6187419csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM99136
388HR-WS-0172026-02-13T07:56:01.931Z6077152372winlogon.exeC:\Windows\System32\winlogon.exeACME\cjohnson181810
389HR-WS-0172026-02-10T14:35:42.429Z4544619439dwm.exeC:\Windows\System32\dwm.exeACME\cjohnson342455
390HR-WS-0172026-02-11T21:50:40.487Z6155618421SystemSystemNT AUTHORITY\SYSTEM12206
391HR-WS-0172026-02-13T11:03:06.046Z7177490smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM311167
392HR-WS-0172026-02-11T13:36:47.744Z4014826278services.exeC:\Windows\System32\services.exeACME\cjohnson400042
393HR-WS-0172026-02-15T06:18:20.737Z5447154942spoolsv.exeC:\Windows\System32\spoolsv.exeACME\cjohnson277190
394HR-WS-0172026-02-13T05:56:28.940Z2118452542MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\cjohnson110465
395HR-WS-0172026-02-19T01:03:15.781Z3718448525OneDrive.exeC:\Windows\System32\OneDrive.exeACME\cjohnson17458
396FIN-WS-0182026-02-16T00:35:53.641Z4620220svchost.exeC:\Windows\System32\svchost.exeACME\gwhite202527
397FIN-WS-0182026-02-20T12:07:02.885Z612788492explorer.exeC:\Windows\System32\explorer.exeACME\gwhite227053
398FIN-WS-0182026-02-19T04:23:48.674Z3906411681chrome.exeC:\Windows\System32\chrome.exeACME\gwhite113721
399FIN-WS-0182026-02-13T20:36:03.450Z1562637227msedge.exeC:\Windows\System32\msedge.exeACME\gwhite127502
400FIN-WS-0182026-02-19T00:45:35.895Z6081148005outlook.exeC:\Windows\System32\outlook.exeACME\gwhite18078
401FIN-WS-0182026-02-16T21:12:31.720Z4899344118teams.exeC:\Windows\System32\teams.exeACME\gwhite68054
402FIN-WS-0182026-02-18T00:33:29.863Z4298322802code.exeC:\Windows\System32\code.exeACME\gwhite495075
403FIN-WS-0182026-02-13T19:40:07.323Z1290139083powershell.exeC:\Windows\System32\powershell.exeACME\gwhite346407
404FIN-WS-0182026-02-16T23:53:58.722Z1211256877cmd.exeC:\Windows\System32\cmd.exeACME\gwhite210902
405FIN-WS-0182026-02-15T01:36:27.393Z4552913609notepad.exeC:\Windows\System32\notepad.exeACME\gwhite432137
406FIN-WS-0182026-02-18T02:35:09.990Z3204843890taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite56342
407FIN-WS-0182026-02-14T01:41:57.300Z1161553652RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite164316
408FIN-WS-0182026-02-17T19:50:53.310Z2383334888SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite257661
409FIN-WS-0182026-02-11T14:45:11.719Z529682lsass.exeC:\Windows\System32\lsass.exeACME\gwhite50816
410FIN-WS-0182026-02-10T23:37:39.565Z484714csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM185078
411FIN-WS-0182026-02-12T19:24:14.406Z809032247winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite109152
412FIN-WS-0182026-02-12T09:01:43.336Z2401036615dwm.exeC:\Windows\System32\dwm.exeACME\gwhite75509
413FIN-WS-0182026-02-19T00:04:36.226Z5853219366SystemSystemNT AUTHORITY\SYSTEM332362
414FIN-WS-0182026-02-13T20:13:31.988Z116578248smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM179173
415FIN-WS-0182026-02-13T13:15:22.942Z2819738054services.exeC:\Windows\System32\services.exeACME\gwhite116513
416FIN-WS-0182026-02-19T13:28:35.064Z3635432571spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite250373
417FIN-WS-0182026-02-20T00:57:08.684Z468230089MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite122124
418FIN-WS-0182026-02-19T13:00:10.930Z2131144932OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite114139
419SLS-WS-0192026-02-17T10:12:50.508Z4394617svchost.exeC:\Windows\System32\svchost.exeACME\svc_backup44972
420SLS-WS-0192026-02-19T20:29:44.228Z599333796explorer.exeC:\Windows\System32\explorer.exeACME\svc_backup411782
421SLS-WS-0192026-02-15T22:37:45.297Z5389818358chrome.exeC:\Windows\System32\chrome.exeACME\svc_backup405391
422SLS-WS-0192026-02-13T18:41:56.794Z5096311510msedge.exeC:\Windows\System32\msedge.exeACME\svc_backup84411
423SLS-WS-0192026-02-15T08:58:38.614Z4738959646outlook.exeC:\Windows\System32\outlook.exeACME\svc_backup321317
424SLS-WS-0192026-02-13T06:09:19.108Z2792251614teams.exeC:\Windows\System32\teams.exeACME\svc_backup354035
425SLS-WS-0192026-02-19T05:54:29.323Z5113513344code.exeC:\Windows\System32\code.exeACME\svc_backup226709
426SLS-WS-0192026-02-11T22:33:06.687Z550350382powershell.exeC:\Windows\System32\powershell.exeACME\svc_backup338727
427SLS-WS-0192026-02-11T19:17:59.622Z3938640495cmd.exeC:\Windows\System32\cmd.exeACME\svc_backup289063
428SLS-WS-0192026-02-15T21:22:59.650Z2767043415notepad.exeC:\Windows\System32\notepad.exeACME\svc_backup379742
429SLS-WS-0192026-02-16T03:35:19.692Z4621531271taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_backup81329
430SLS-WS-0192026-02-15T06:01:44.699Z4378945624RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_backup174308
431SLS-WS-0192026-02-12T15:33:29.318Z684320710SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_backup345643
432SLS-WS-0192026-02-10T19:47:05.631Z289185lsass.exeC:\Windows\System32\lsass.exeACME\svc_backup310313
433SLS-WS-0192026-02-10T17:01:56.693Z2890812csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM202260
434SLS-WS-0192026-02-16T12:11:45.301Z2470840467winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_backup359672
435SLS-WS-0192026-02-11T16:06:28.610Z6126042151dwm.exeC:\Windows\System32\dwm.exeACME\svc_backup385231
436SLS-WS-0192026-02-20T09:27:07.645Z3591620660SystemSystemNT AUTHORITY\SYSTEM388070
437SLS-WS-0192026-02-13T18:24:27.119Z2603834046smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM452549
438SLS-WS-0192026-02-11T03:40:49.118Z1814119191services.exeC:\Windows\System32\services.exeACME\svc_backup150778
439SLS-WS-0192026-02-12T19:08:35.845Z5394537577spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_backup53111
440SLS-WS-0192026-02-11T04:56:55.155Z5029159426MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_backup168713
441SLS-WS-0192026-02-16T23:18:14.942Z2510349696OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_backup285150
442ENG-WS-0202026-02-18T03:07:46.049Z1125013svchost.exeC:\Windows\System32\svchost.exeACME\jsmith66655
443ENG-WS-0202026-02-10T18:19:19.091Z661334040explorer.exeC:\Windows\System32\explorer.exeACME\jsmith376713
444ENG-WS-0202026-02-18T12:14:23.538Z4552843113chrome.exeC:\Windows\System32\chrome.exeACME\jsmith376291
445ENG-WS-0202026-02-20T12:14:06.209Z1619049264msedge.exeC:\Windows\System32\msedge.exeACME\jsmith132003
446ENG-WS-0202026-02-17T11:11:07.202Z1122615231outlook.exeC:\Windows\System32\outlook.exeACME\jsmith388841
447ENG-WS-0202026-02-13T17:20:03.875Z812136135teams.exeC:\Windows\System32\teams.exeACME\jsmith91054
448ENG-WS-0202026-02-17T04:47:37.454Z957739073code.exeC:\Windows\System32\code.exeACME\jsmith225178
449ENG-WS-0202026-02-14T11:44:39.210Z5378323306powershell.exeC:\Windows\System32\powershell.exeACME\jsmith105498
450ENG-WS-0202026-02-10T23:27:29.459Z4566458756cmd.exeC:\Windows\System32\cmd.exeACME\jsmith231823
451ENG-WS-0202026-02-12T20:06:46.341Z4824753303notepad.exeC:\Windows\System32\notepad.exeACME\jsmith326145
452ENG-WS-0202026-02-11T03:38:00.825Z3388728790taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith352380
453ENG-WS-0202026-02-13T08:16:57.046Z1916933599RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith169484
454ENG-WS-0202026-02-13T12:58:48.731Z6257117856SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith457025
455ENG-WS-0202026-02-10T08:59:38.740Z131301lsass.exeC:\Windows\System32\lsass.exeACME\jsmith339573
456ENG-WS-0202026-02-18T19:43:06.618Z1925211csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM401216
457ENG-WS-0202026-02-18T00:31:18.134Z5891329638winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith246850
458ENG-WS-0202026-02-11T14:16:35.342Z6041119171dwm.exeC:\Windows\System32\dwm.exeACME\jsmith466928
459ENG-WS-0202026-02-14T17:01:37.726Z1933458997SystemSystemNT AUTHORITY\SYSTEM441857
460ENG-WS-0202026-02-18T13:51:34.495Z4913854170smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM456009
461ENG-WS-0202026-02-12T12:29:30.591Z667132961services.exeC:\Windows\System32\services.exeACME\jsmith211460
462ENG-WS-0202026-02-18T05:26:31.406Z1612213249spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith465360
463ENG-WS-0202026-02-19T06:50:27.507Z2414414628MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith499935
464ENG-WS-0202026-02-17T16:26:51.403Z5835315974OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith104231
465ENG-WS-0202026-02-17T23:38:56.904Z4036445156discord.exeC:\Users\jsmith\AppData\Local\discord\discord.exeACME\jsmith315104
466LEG-WS-0212026-02-19T10:41:24.659Z2498613svchost.exeC:\Windows\System32\svchost.exeACME\svc_web238638
467LEG-WS-0212026-02-18T22:49:21.246Z392412344explorer.exeC:\Windows\System32\explorer.exeACME\svc_web455248
468LEG-WS-0212026-02-15T02:07:15.253Z221561622chrome.exeC:\Windows\System32\chrome.exeACME\svc_web201192
469LEG-WS-0212026-02-10T19:09:09.852Z2812828067msedge.exeC:\Windows\System32\msedge.exeACME\svc_web203689
470LEG-WS-0212026-02-17T08:26:43.707Z3782142091outlook.exeC:\Windows\System32\outlook.exeACME\svc_web11132
471LEG-WS-0212026-02-17T17:57:32.792Z3389023760teams.exeC:\Windows\System32\teams.exeACME\svc_web224652
472LEG-WS-0212026-02-14T17:12:55.056Z54653196code.exeC:\Windows\System32\code.exeACME\svc_web324133
473LEG-WS-0212026-02-13T22:32:07.337Z2695324509powershell.exeC:\Windows\System32\powershell.exeACME\svc_web445297
474LEG-WS-0212026-02-11T17:59:10.562Z4828513809cmd.exeC:\Windows\System32\cmd.exeACME\svc_web401183
475LEG-WS-0212026-02-15T12:06:47.207Z6419016788notepad.exeC:\Windows\System32\notepad.exeACME\svc_web454872
476LEG-WS-0212026-02-17T17:17:04.663Z713142600taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_web34636
477LEG-WS-0212026-02-13T04:00:19.922Z1193844172RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_web354588
478LEG-WS-0212026-02-13T00:59:55.842Z4941955008SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_web299241
479LEG-WS-0212026-02-13T06:53:00.219Z2867017lsass.exeC:\Windows\System32\lsass.exeACME\svc_web443411
480LEG-WS-0212026-02-16T09:46:00.774Z1388511csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM405755
481LEG-WS-0212026-02-10T09:46:51.056Z255133382winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_web463375
482LEG-WS-0212026-02-17T05:01:18.704Z450736287dwm.exeC:\Windows\System32\dwm.exeACME\svc_web82488
483LEG-WS-0212026-02-15T16:24:40.175Z60659192SystemSystemNT AUTHORITY\SYSTEM56428
484LEG-WS-0212026-02-12T14:10:57.874Z2549341530smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM466270
485LEG-WS-0212026-02-16T12:06:15.128Z362368079services.exeC:\Windows\System32\services.exeACME\svc_web373753
486LEG-WS-0212026-02-16T21:51:04.165Z4446838223spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_web77095
487LEG-WS-0212026-02-16T05:35:46.508Z313445423MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_web266289
488LEG-WS-0212026-02-18T17:41:47.449Z3892437829OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_web294117
489MKT-WS-0222026-02-15T21:34:17.262Z6259420svchost.exeC:\Windows\System32\svchost.exeACME\agarcia459906
490MKT-WS-0222026-02-11T08:04:51.613Z396798526explorer.exeC:\Windows\System32\explorer.exeACME\agarcia175335
491MKT-WS-0222026-02-19T03:54:56.395Z2786478chrome.exeC:\Windows\System32\chrome.exeACME\agarcia39825
492MKT-WS-0222026-02-14T02:30:35.659Z3059748401msedge.exeC:\Windows\System32\msedge.exeACME\agarcia221740
493MKT-WS-0222026-02-11T09:38:11.570Z48889621outlook.exeC:\Windows\System32\outlook.exeACME\agarcia17793
494MKT-WS-0222026-02-14T19:45:36.732Z6335634173teams.exeC:\Windows\System32\teams.exeACME\agarcia231467
495MKT-WS-0222026-02-13T15:51:06.104Z4490555294code.exeC:\Windows\System32\code.exeACME\agarcia66625
496MKT-WS-0222026-02-11T16:47:30.679Z836627067powershell.exeC:\Windows\System32\powershell.exeACME\agarcia314077
497MKT-WS-0222026-02-13T19:26:52.231Z513935769cmd.exeC:\Windows\System32\cmd.exeACME\agarcia360750
498MKT-WS-0222026-02-12T16:12:41.124Z3406940383notepad.exeC:\Windows\System32\notepad.exeACME\agarcia268602
499MKT-WS-0222026-02-18T14:59:56.234Z713559539taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia438182
500MKT-WS-0222026-02-14T21:07:15.871Z2655757267RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia417114
501MKT-WS-0222026-02-15T09:52:23.512Z492165370SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia257524
502MKT-WS-0222026-02-12T11:33:24.331Z132673lsass.exeC:\Windows\System32\lsass.exeACME\agarcia444440
503MKT-WS-0222026-02-19T17:13:03.688Z4035815csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM299531
504MKT-WS-0222026-02-12T19:49:20.484Z162207683winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia73178
505MKT-WS-0222026-02-18T01:57:29.024Z4683952076dwm.exeC:\Windows\System32\dwm.exeACME\agarcia355635
506MKT-WS-0222026-02-18T16:01:34.472Z6237028065SystemSystemNT AUTHORITY\SYSTEM411761
507MKT-WS-0222026-02-13T21:40:18.079Z5262722685smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM130543
508MKT-WS-0222026-02-14T17:46:06.013Z6251932334services.exeC:\Windows\System32\services.exeACME\agarcia194955
509MKT-WS-0222026-02-19T07:20:30.084Z42036183spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia461425
510MKT-WS-0222026-02-14T21:19:24.510Z845821103MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia461058
511MKT-WS-0222026-02-18T09:29:42.564Z2787841128OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia58827
512EXEC-WS-0232026-02-12T02:22:36.193Z729015svchost.exeC:\Windows\System32\svchost.exeACME\idavis51166
513EXEC-WS-0232026-02-12T22:57:29.394Z5038321708explorer.exeC:\Windows\System32\explorer.exeACME\idavis364475
514EXEC-WS-0232026-02-12T03:02:19.604Z1283327193chrome.exeC:\Windows\System32\chrome.exeACME\idavis49783
515EXEC-WS-0232026-02-20T14:43:31.161Z5701448469msedge.exeC:\Windows\System32\msedge.exeACME\idavis103376
516EXEC-WS-0232026-02-12T18:34:06.115Z189308061outlook.exeC:\Windows\System32\outlook.exeACME\idavis176003
517EXEC-WS-0232026-02-12T10:25:16.994Z163912409teams.exeC:\Windows\System32\teams.exeACME\idavis211919
518EXEC-WS-0232026-02-15T06:20:51.040Z91146866code.exeC:\Windows\System32\code.exeACME\idavis311798
519EXEC-WS-0232026-02-16T22:40:32.782Z2735155514powershell.exeC:\Windows\System32\powershell.exeACME\idavis265795
520EXEC-WS-0232026-02-14T23:27:46.758Z2899921449cmd.exeC:\Windows\System32\cmd.exeACME\idavis339568
521EXEC-WS-0232026-02-14T18:58:24.836Z4891719483notepad.exeC:\Windows\System32\notepad.exeACME\idavis166333
522EXEC-WS-0232026-02-12T23:14:12.989Z2006046555taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis75687
523EXEC-WS-0232026-02-19T03:50:10.286Z763033869RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis449296
524EXEC-WS-0232026-02-16T17:41:51.328Z3210914365SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis293432
525EXEC-WS-0232026-02-11T10:25:59.027Z433226lsass.exeC:\Windows\System32\lsass.exeACME\idavis67658
526EXEC-WS-0232026-02-19T18:22:26.617Z5870811csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM268465
527EXEC-WS-0232026-02-20T07:36:03.164Z3570532186winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis147560
528EXEC-WS-0232026-02-19T16:57:59.304Z539322720dwm.exeC:\Windows\System32\dwm.exeACME\idavis185238
529EXEC-WS-0232026-02-18T08:22:54.759Z390614382SystemSystemNT AUTHORITY\SYSTEM179513
530EXEC-WS-0232026-02-13T13:35:08.193Z444413731smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM349852
531EXEC-WS-0232026-02-10T21:28:17.963Z2495424572services.exeC:\Windows\System32\services.exeACME\idavis370449
532EXEC-WS-0232026-02-13T16:48:14.926Z4353427349spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis220240
533EXEC-WS-0232026-02-19T21:56:20.110Z4070936974MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis362642
534EXEC-WS-0232026-02-16T00:22:41.834Z4893014461OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis414793
535IT-WS-0242026-02-11T03:33:11.371Z5807216svchost.exeC:\Windows\System32\svchost.exeACME\gwhite162464
536IT-WS-0242026-02-13T20:51:57.384Z578710935explorer.exeC:\Windows\System32\explorer.exeACME\gwhite125990
537IT-WS-0242026-02-15T17:39:30.537Z4212252636chrome.exeC:\Windows\System32\chrome.exeACME\gwhite365973
538IT-WS-0242026-02-18T10:12:03.611Z6053359186msedge.exeC:\Windows\System32\msedge.exeACME\gwhite131521
539IT-WS-0242026-02-18T23:48:25.411Z1737656717outlook.exeC:\Windows\System32\outlook.exeACME\gwhite14399
540IT-WS-0242026-02-18T10:08:01.929Z2788224259teams.exeC:\Windows\System32\teams.exeACME\gwhite434615
541IT-WS-0242026-02-16T16:43:09.438Z589038969code.exeC:\Windows\System32\code.exeACME\gwhite381105
542IT-WS-0242026-02-20T04:04:33.043Z6415940782powershell.exeC:\Windows\System32\powershell.exeACME\gwhite222053
543IT-WS-0242026-02-14T03:40:16.002Z5507625163cmd.exeC:\Windows\System32\cmd.exeACME\gwhite401807
544IT-WS-0242026-02-18T09:19:54.019Z1038946831notepad.exeC:\Windows\System32\notepad.exeACME\gwhite460666
545IT-WS-0242026-02-15T12:42:29.952Z2769053708taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite26849
546IT-WS-0242026-02-19T14:59:30.208Z5692015586RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite123233
547IT-WS-0242026-02-14T22:09:00.079Z1412424732SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite357592
548IT-WS-0242026-02-12T23:58:50.516Z3201515lsass.exeC:\Windows\System32\lsass.exeACME\gwhite445041
549IT-WS-0242026-02-19T07:35:01.843Z63232csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM470782
550IT-WS-0242026-02-12T22:58:54.230Z4490636713winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite307947
551IT-WS-0242026-02-11T14:30:03.278Z3084459214dwm.exeC:\Windows\System32\dwm.exeACME\gwhite405808
552IT-WS-0242026-02-15T17:56:34.795Z500327438SystemSystemNT AUTHORITY\SYSTEM370444
553IT-WS-0242026-02-10T11:03:38.207Z370259220smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM352961
554IT-WS-0242026-02-10T16:47:35.937Z6020318146services.exeC:\Windows\System32\services.exeACME\gwhite386762
555IT-WS-0242026-02-18T00:15:55.187Z1618922076spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite269009
556IT-WS-0242026-02-18T00:00:05.423Z1210431383MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite60453
557IT-WS-0242026-02-15T09:24:25.604Z6036057953OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite361462
558HR-WS-0252026-02-12T12:47:28.631Z535462svchost.exeC:\Windows\System32\svchost.exeACME\bwilson349314
559HR-WS-0252026-02-14T11:20:43.285Z80528748explorer.exeC:\Windows\System32\explorer.exeACME\bwilson148578
560HR-WS-0252026-02-17T15:34:51.424Z5915628646chrome.exeC:\Windows\System32\chrome.exeACME\bwilson51588
561HR-WS-0252026-02-20T01:01:25.674Z5531732970msedge.exeC:\Windows\System32\msedge.exeACME\bwilson250003
562HR-WS-0252026-02-15T15:03:10.132Z3344351918outlook.exeC:\Windows\System32\outlook.exeACME\bwilson376490
563HR-WS-0252026-02-16T19:32:53.006Z5947342206teams.exeC:\Windows\System32\teams.exeACME\bwilson276774
564HR-WS-0252026-02-20T15:00:39.267Z3608633653code.exeC:\Windows\System32\code.exeACME\bwilson184344
565HR-WS-0252026-02-16T20:25:52.887Z5603832905powershell.exeC:\Windows\System32\powershell.exeACME\bwilson381303
566HR-WS-0252026-02-17T23:06:54.045Z3231740681cmd.exeC:\Windows\System32\cmd.exeACME\bwilson187418
567HR-WS-0252026-02-16T09:14:37.352Z3059046012notepad.exeC:\Windows\System32\notepad.exeACME\bwilson45746
568HR-WS-0252026-02-19T10:26:58.986Z658519254taskhostw.exeC:\Windows\System32\taskhostw.exeACME\bwilson46429
569HR-WS-0252026-02-19T02:39:15.621Z3012239527RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\bwilson219513
570HR-WS-0252026-02-19T08:52:55.592Z449342521SearchHost.exeC:\Windows\System32\SearchHost.exeACME\bwilson29419
571HR-WS-0252026-02-16T11:13:35.496Z6111513lsass.exeC:\Windows\System32\lsass.exeACME\bwilson477022
572HR-WS-0252026-02-18T15:58:46.519Z617076csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM335843
573HR-WS-0252026-02-18T16:45:30.079Z4713837525winlogon.exeC:\Windows\System32\winlogon.exeACME\bwilson51583
574HR-WS-0252026-02-19T07:04:33.032Z145935417dwm.exeC:\Windows\System32\dwm.exeACME\bwilson449677
575HR-WS-0252026-02-17T23:58:26.049Z4746351298SystemSystemNT AUTHORITY\SYSTEM108093
576HR-WS-0252026-02-18T06:28:52.413Z622448809smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM352616
577HR-WS-0252026-02-14T10:07:13.935Z3396526164services.exeC:\Windows\System32\services.exeACME\bwilson450151
578HR-WS-0252026-02-20T10:47:29.357Z2799535620spoolsv.exeC:\Windows\System32\spoolsv.exeACME\bwilson318974
579HR-WS-0252026-02-13T11:25:03.215Z3754034516MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\bwilson10325
580HR-WS-0252026-02-12T06:49:16.122Z146815106OneDrive.exeC:\Windows\System32\OneDrive.exeACME\bwilson203014
581FIN-WS-0262026-02-20T17:00:34.700Z40628svchost.exeC:\Windows\System32\svchost.exeACME\emartinez461469
582FIN-WS-0262026-02-13T01:22:54.376Z208659262explorer.exeC:\Windows\System32\explorer.exeACME\emartinez51691
583FIN-WS-0262026-02-12T02:05:59.729Z1796349573chrome.exeC:\Windows\System32\chrome.exeACME\emartinez386026
584FIN-WS-0262026-02-14T05:28:46.772Z2913126773msedge.exeC:\Windows\System32\msedge.exeACME\emartinez50929
585FIN-WS-0262026-02-12T14:00:01.442Z5295714711outlook.exeC:\Windows\System32\outlook.exeACME\emartinez94232
586FIN-WS-0262026-02-13T06:33:29.455Z5509436987teams.exeC:\Windows\System32\teams.exeACME\emartinez196878
587FIN-WS-0262026-02-10T21:15:39.935Z3132028755code.exeC:\Windows\System32\code.exeACME\emartinez374315
588FIN-WS-0262026-02-18T04:16:58.502Z6494841416powershell.exeC:\Windows\System32\powershell.exeACME\emartinez219956
589FIN-WS-0262026-02-11T01:39:49.703Z5664945277cmd.exeC:\Windows\System32\cmd.exeACME\emartinez16897
590FIN-WS-0262026-02-18T12:38:22.282Z3548517825notepad.exeC:\Windows\System32\notepad.exeACME\emartinez494844
591FIN-WS-0262026-02-16T05:48:29.040Z4155844645taskhostw.exeC:\Windows\System32\taskhostw.exeACME\emartinez396949
592FIN-WS-0262026-02-15T07:27:48.096Z4718738804RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\emartinez158846
593FIN-WS-0262026-02-12T11:30:07.084Z5074420897SearchHost.exeC:\Windows\System32\SearchHost.exeACME\emartinez223405
594FIN-WS-0262026-02-14T11:36:27.842Z3566915lsass.exeC:\Windows\System32\lsass.exeACME\emartinez76247
595FIN-WS-0262026-02-15T00:09:39.466Z4563119csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM258404
596FIN-WS-0262026-02-11T12:23:00.824Z2479010083winlogon.exeC:\Windows\System32\winlogon.exeACME\emartinez334826
597FIN-WS-0262026-02-12T09:02:24.421Z6170656289dwm.exeC:\Windows\System32\dwm.exeACME\emartinez158321
598FIN-WS-0262026-02-14T13:00:23.936Z4145421128SystemSystemNT AUTHORITY\SYSTEM36804
599FIN-WS-0262026-02-12T16:40:11.794Z1849847368smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM447060
600FIN-WS-0262026-02-18T01:15:33.150Z799622673services.exeC:\Windows\System32\services.exeACME\emartinez490972
601FIN-WS-0262026-02-16T20:43:58.045Z4369033661spoolsv.exeC:\Windows\System32\spoolsv.exeACME\emartinez359613
602FIN-WS-0262026-02-16T03:37:05.100Z5773220034MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\emartinez438773
603FIN-WS-0262026-02-19T08:56:47.770Z4209237873OneDrive.exeC:\Windows\System32\OneDrive.exeACME\emartinez374958
604SLS-WS-0272026-02-12T04:33:47.044Z643163svchost.exeC:\Windows\System32\svchost.exeACME\cjohnson479306
605SLS-WS-0272026-02-15T17:57:03.183Z34112189explorer.exeC:\Windows\System32\explorer.exeACME\cjohnson174967
606SLS-WS-0272026-02-13T13:57:11.248Z379122888chrome.exeC:\Windows\System32\chrome.exeACME\cjohnson409292
607SLS-WS-0272026-02-12T03:50:33.042Z203556962msedge.exeC:\Windows\System32\msedge.exeACME\cjohnson55550
608SLS-WS-0272026-02-15T00:47:27.043Z6413244494outlook.exeC:\Windows\System32\outlook.exeACME\cjohnson113706
609SLS-WS-0272026-02-12T22:52:55.585Z2660647049teams.exeC:\Windows\System32\teams.exeACME\cjohnson464732
610SLS-WS-0272026-02-15T10:43:49.090Z1606752412code.exeC:\Windows\System32\code.exeACME\cjohnson131178
611SLS-WS-0272026-02-12T11:08:21.390Z143695187powershell.exeC:\Windows\System32\powershell.exeACME\cjohnson429498
612SLS-WS-0272026-02-13T13:49:49.233Z416169871cmd.exeC:\Windows\System32\cmd.exeACME\cjohnson154302
613SLS-WS-0272026-02-14T21:57:25.000Z5806241143notepad.exeC:\Windows\System32\notepad.exeACME\cjohnson421438
614SLS-WS-0272026-02-19T16:39:04.023Z3369237609taskhostw.exeC:\Windows\System32\taskhostw.exeACME\cjohnson457742
615SLS-WS-0272026-02-12T00:36:44.221Z5425725890RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\cjohnson40270
616SLS-WS-0272026-02-18T11:54:57.809Z4988331578SearchHost.exeC:\Windows\System32\SearchHost.exeACME\cjohnson246942
617SLS-WS-0272026-02-17T21:53:38.798Z3978410lsass.exeC:\Windows\System32\lsass.exeACME\cjohnson497236
618SLS-WS-0272026-02-12T04:24:49.832Z4216020csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM19407
619SLS-WS-0272026-02-15T11:45:10.546Z535546890winlogon.exeC:\Windows\System32\winlogon.exeACME\cjohnson260929
620SLS-WS-0272026-02-15T23:29:43.767Z5858017635dwm.exeC:\Windows\System32\dwm.exeACME\cjohnson70954
621SLS-WS-0272026-02-13T21:09:47.345Z540246534SystemSystemNT AUTHORITY\SYSTEM46581
622SLS-WS-0272026-02-18T07:39:25.581Z5927331566smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM11397
623SLS-WS-0272026-02-17T10:57:50.775Z4807432234services.exeC:\Windows\System32\services.exeACME\cjohnson222184
624SLS-WS-0272026-02-12T16:13:41.071Z155625354spoolsv.exeC:\Windows\System32\spoolsv.exeACME\cjohnson144605
625SLS-WS-0272026-02-17T05:36:33.727Z451514056MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\cjohnson381954
626SLS-WS-0272026-02-16T10:41:43.468Z6129618085OneDrive.exeC:\Windows\System32\OneDrive.exeACME\cjohnson429089
627SLS-WS-0272026-02-17T14:46:26.104Z5149321005discord.exeC:\Users\cjohnson\AppData\Local\discord\discord.exeACME\cjohnson98268
628ENG-WS-0282026-02-12T02:55:29.950Z2607813svchost.exeC:\Windows\System32\svchost.exeACME\idavis49209
629ENG-WS-0282026-02-15T09:03:32.214Z1821023096explorer.exeC:\Windows\System32\explorer.exeACME\idavis223381
630ENG-WS-0282026-02-15T20:49:19.539Z2083645327chrome.exeC:\Windows\System32\chrome.exeACME\idavis362376
631ENG-WS-0282026-02-15T14:51:37.552Z2850951143msedge.exeC:\Windows\System32\msedge.exeACME\idavis86435
632ENG-WS-0282026-02-19T22:46:11.775Z5488150572outlook.exeC:\Windows\System32\outlook.exeACME\idavis113315
633ENG-WS-0282026-02-14T05:00:31.776Z2904733622teams.exeC:\Windows\System32\teams.exeACME\idavis394646
634ENG-WS-0282026-02-11T08:07:56.479Z2949630409code.exeC:\Windows\System32\code.exeACME\idavis464630
635ENG-WS-0282026-02-11T14:44:40.363Z6381330450powershell.exeC:\Windows\System32\powershell.exeACME\idavis35540
636ENG-WS-0282026-02-16T06:41:02.103Z3779738814cmd.exeC:\Windows\System32\cmd.exeACME\idavis103244
637ENG-WS-0282026-02-17T03:55:58.556Z5608545589notepad.exeC:\Windows\System32\notepad.exeACME\idavis318244
638ENG-WS-0282026-02-15T11:09:48.840Z517245761taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis379199
639ENG-WS-0282026-02-10T08:15:37.014Z4878531444RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis453310
640ENG-WS-0282026-02-16T23:14:00.295Z4939032177SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis1781
641ENG-WS-0282026-02-17T01:40:15.091Z84206lsass.exeC:\Windows\System32\lsass.exeACME\idavis303758
642ENG-WS-0282026-02-18T09:43:02.284Z5657914csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM387193
643ENG-WS-0282026-02-13T20:12:30.211Z1823020159winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis232997
644ENG-WS-0282026-02-13T08:33:18.797Z3324655655dwm.exeC:\Windows\System32\dwm.exeACME\idavis103760
645ENG-WS-0282026-02-20T10:20:18.006Z10545935SystemSystemNT AUTHORITY\SYSTEM116060
646ENG-WS-0282026-02-15T12:14:40.793Z3984335823smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM335061
647ENG-WS-0282026-02-14T17:00:39.993Z495602720services.exeC:\Windows\System32\services.exeACME\idavis411590
648ENG-WS-0282026-02-14T17:54:30.344Z6347618898spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis499868
649ENG-WS-0282026-02-16T05:00:31.393Z2241454723MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis387836
650ENG-WS-0282026-02-17T04:40:18.931Z392125846OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis449472
651LEG-WS-0292026-02-16T14:15:47.227Z4240510svchost.exeC:\Windows\System32\svchost.exeACME\hbrown269041
652LEG-WS-0292026-02-13T03:56:07.563Z3198745775explorer.exeC:\Windows\System32\explorer.exeACME\hbrown373435
653LEG-WS-0292026-02-12T04:36:14.546Z1277545895chrome.exeC:\Windows\System32\chrome.exeACME\hbrown110872
654LEG-WS-0292026-02-11T19:18:17.870Z4739738196msedge.exeC:\Windows\System32\msedge.exeACME\hbrown199250
655LEG-WS-0292026-02-20T00:52:10.378Z3633556393outlook.exeC:\Windows\System32\outlook.exeACME\hbrown263800
656LEG-WS-0292026-02-17T02:02:35.105Z309541779teams.exeC:\Windows\System32\teams.exeACME\hbrown109560
657LEG-WS-0292026-02-14T05:02:21.353Z3093024154code.exeC:\Windows\System32\code.exeACME\hbrown387890
658LEG-WS-0292026-02-15T20:49:27.663Z5203932285powershell.exeC:\Windows\System32\powershell.exeACME\hbrown413182
659LEG-WS-0292026-02-13T17:55:11.425Z5637018905cmd.exeC:\Windows\System32\cmd.exeACME\hbrown370737
660LEG-WS-0292026-02-14T08:37:49.405Z4555958886notepad.exeC:\Windows\System32\notepad.exeACME\hbrown171049
661LEG-WS-0292026-02-16T08:59:50.356Z14148378taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown137685
662LEG-WS-0292026-02-13T07:58:02.576Z4907127530RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown10495
663LEG-WS-0292026-02-11T11:54:22.160Z5980433213SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown68639
664LEG-WS-0292026-02-13T22:30:10.521Z99366lsass.exeC:\Windows\System32\lsass.exeACME\hbrown242455
665LEG-WS-0292026-02-13T00:40:15.783Z243901csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM73440
666LEG-WS-0292026-02-14T10:18:31.473Z1082327727winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown395532
667LEG-WS-0292026-02-18T15:26:16.025Z1573245464dwm.exeC:\Windows\System32\dwm.exeACME\hbrown384236
668LEG-WS-0292026-02-16T06:59:55.553Z49931298SystemSystemNT AUTHORITY\SYSTEM440535
669LEG-WS-0292026-02-14T04:28:01.369Z5947320756smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM388531
670LEG-WS-0292026-02-14T22:52:55.419Z4249342324services.exeC:\Windows\System32\services.exeACME\hbrown52427
671LEG-WS-0292026-02-16T06:31:38.914Z1887450568spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown346790
672LEG-WS-0292026-02-14T17:28:18.504Z6283227883MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown77301
673LEG-WS-0292026-02-12T23:18:33.083Z5304943202OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown230868
674MKT-WS-0302026-02-11T22:03:18.766Z6432818svchost.exeC:\Windows\System32\svchost.exeACME\cjohnson357727
675MKT-WS-0302026-02-10T22:50:49.649Z6345933019explorer.exeC:\Windows\System32\explorer.exeACME\cjohnson37864
676MKT-WS-0302026-02-11T20:07:19.201Z40883308chrome.exeC:\Windows\System32\chrome.exeACME\cjohnson166764
677MKT-WS-0302026-02-19T03:21:50.965Z3454650728msedge.exeC:\Windows\System32\msedge.exeACME\cjohnson277941
678MKT-WS-0302026-02-14T19:08:37.449Z4446649769outlook.exeC:\Windows\System32\outlook.exeACME\cjohnson60376
679MKT-WS-0302026-02-17T03:48:38.363Z4131930235teams.exeC:\Windows\System32\teams.exeACME\cjohnson126480
680MKT-WS-0302026-02-19T01:29:06.418Z3927839618code.exeC:\Windows\System32\code.exeACME\cjohnson322207
681MKT-WS-0302026-02-12T21:09:10.630Z3144839621powershell.exeC:\Windows\System32\powershell.exeACME\cjohnson458923
682MKT-WS-0302026-02-18T13:13:46.341Z4969951311cmd.exeC:\Windows\System32\cmd.exeACME\cjohnson118381
683MKT-WS-0302026-02-16T17:12:10.420Z4963552230notepad.exeC:\Windows\System32\notepad.exeACME\cjohnson107489
684MKT-WS-0302026-02-12T08:55:22.445Z1620633226taskhostw.exeC:\Windows\System32\taskhostw.exeACME\cjohnson103741
685MKT-WS-0302026-02-18T20:44:03.165Z3463629336RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\cjohnson291435
686MKT-WS-0302026-02-16T01:55:30.195Z3367813879SearchHost.exeC:\Windows\System32\SearchHost.exeACME\cjohnson418602
687MKT-WS-0302026-02-16T09:12:47.725Z2621917lsass.exeC:\Windows\System32\lsass.exeACME\cjohnson278540
688MKT-WS-0302026-02-15T16:10:53.033Z990712csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM235596
689MKT-WS-0302026-02-19T09:38:16.097Z1388836622winlogon.exeC:\Windows\System32\winlogon.exeACME\cjohnson228398
690MKT-WS-0302026-02-11T09:37:26.632Z6345735392dwm.exeC:\Windows\System32\dwm.exeACME\cjohnson199673
691MKT-WS-0302026-02-18T01:41:40.089Z2294511931SystemSystemNT AUTHORITY\SYSTEM131820
692MKT-WS-0302026-02-15T10:47:19.752Z218982534smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM435103
693MKT-WS-0302026-02-19T00:27:08.798Z4171439631services.exeC:\Windows\System32\services.exeACME\cjohnson332273
694MKT-WS-0302026-02-15T07:58:50.155Z4045015542spoolsv.exeC:\Windows\System32\spoolsv.exeACME\cjohnson258181
695MKT-WS-0302026-02-16T21:57:02.660Z1535948121MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\cjohnson70790
696MKT-WS-0302026-02-16T14:54:29.563Z757138095OneDrive.exeC:\Windows\System32\OneDrive.exeACME\cjohnson14165
697EXEC-WS-0312026-02-14T12:58:07.681Z1685420svchost.exeC:\Windows\System32\svchost.exeACME\hbrown350668
698EXEC-WS-0312026-02-20T00:17:28.238Z1300813771explorer.exeC:\Windows\System32\explorer.exeACME\hbrown93565
699EXEC-WS-0312026-02-19T01:25:51.390Z3904559652chrome.exeC:\Windows\System32\chrome.exeACME\hbrown324405
700EXEC-WS-0312026-02-10T22:22:42.258Z4759323094msedge.exeC:\Windows\System32\msedge.exeACME\hbrown207913
701EXEC-WS-0312026-02-20T17:23:54.737Z3048810190outlook.exeC:\Windows\System32\outlook.exeACME\hbrown81901
702EXEC-WS-0312026-02-16T21:47:40.014Z2686043528teams.exeC:\Windows\System32\teams.exeACME\hbrown98069
703EXEC-WS-0312026-02-19T16:33:55.171Z351355878code.exeC:\Windows\System32\code.exeACME\hbrown236703
704EXEC-WS-0312026-02-15T02:13:37.120Z2658628959powershell.exeC:\Windows\System32\powershell.exeACME\hbrown233952
705EXEC-WS-0312026-02-15T22:34:27.062Z5295750811cmd.exeC:\Windows\System32\cmd.exeACME\hbrown217717
706EXEC-WS-0312026-02-17T07:40:19.811Z6313429141notepad.exeC:\Windows\System32\notepad.exeACME\hbrown121044
707EXEC-WS-0312026-02-15T08:32:15.459Z4605539536taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown280351
708EXEC-WS-0312026-02-10T19:21:06.239Z453039998RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown342891
709EXEC-WS-0312026-02-13T02:11:32.685Z3786328794SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown226574
710EXEC-WS-0312026-02-19T15:40:28.768Z3295819lsass.exeC:\Windows\System32\lsass.exeACME\hbrown120390
711EXEC-WS-0312026-02-14T02:23:15.775Z143342csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM363910
712EXEC-WS-0312026-02-10T18:43:32.911Z3194418491winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown223566
713EXEC-WS-0312026-02-11T19:04:17.294Z1044316896dwm.exeC:\Windows\System32\dwm.exeACME\hbrown62548
714EXEC-WS-0312026-02-12T18:50:46.120Z372646577SystemSystemNT AUTHORITY\SYSTEM80414
715EXEC-WS-0312026-02-17T13:13:49.853Z1842736544smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM262170
716EXEC-WS-0312026-02-13T23:32:45.608Z1240825628services.exeC:\Windows\System32\services.exeACME\hbrown277927
717EXEC-WS-0312026-02-18T10:58:55.417Z3526318040spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown59235
718EXEC-WS-0312026-02-18T21:57:23.630Z4034635261MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown396490
719EXEC-WS-0312026-02-12T12:52:07.333Z258855412OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown305279
720IT-WS-0322026-02-20T10:56:09.671Z1571112svchost.exeC:\Windows\System32\svchost.exeACME\fthompson96699
721IT-WS-0322026-02-14T12:44:20.165Z1742830712explorer.exeC:\Windows\System32\explorer.exeACME\fthompson107922
722IT-WS-0322026-02-13T23:03:36.086Z3938336192chrome.exeC:\Windows\System32\chrome.exeACME\fthompson402355
723IT-WS-0322026-02-14T11:11:05.083Z976153053msedge.exeC:\Windows\System32\msedge.exeACME\fthompson367831
724IT-WS-0322026-02-10T16:37:48.395Z3440121255outlook.exeC:\Windows\System32\outlook.exeACME\fthompson244857
725IT-WS-0322026-02-20T00:11:13.677Z926636325teams.exeC:\Windows\System32\teams.exeACME\fthompson371649
726IT-WS-0322026-02-12T16:39:19.233Z1969955379code.exeC:\Windows\System32\code.exeACME\fthompson340938
727IT-WS-0322026-02-14T00:43:38.193Z4676445618powershell.exeC:\Windows\System32\powershell.exeACME\fthompson407231
728IT-WS-0322026-02-10T10:04:19.706Z5731752009cmd.exeC:\Windows\System32\cmd.exeACME\fthompson304556
729IT-WS-0322026-02-16T11:12:01.902Z4085753301notepad.exeC:\Windows\System32\notepad.exeACME\fthompson268914
730IT-WS-0322026-02-19T16:50:40.507Z2819728522taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson490102
731IT-WS-0322026-02-12T00:15:41.886Z4597537353RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson366595
732IT-WS-0322026-02-17T01:13:05.551Z6405717646SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson460563
733IT-WS-0322026-02-17T12:31:17.694Z6491011lsass.exeC:\Windows\System32\lsass.exeACME\fthompson488494
734IT-WS-0322026-02-19T09:48:30.058Z215123csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM324165
735IT-WS-0322026-02-15T13:48:18.500Z198120446winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson245953
736IT-WS-0322026-02-13T22:11:06.537Z4909714746dwm.exeC:\Windows\System32\dwm.exeACME\fthompson319455
737IT-WS-0322026-02-13T04:18:15.368Z3206624656SystemSystemNT AUTHORITY\SYSTEM439509
738IT-WS-0322026-02-13T16:23:53.971Z1891552191smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM201146
739IT-WS-0322026-02-16T18:39:19.962Z5520719346services.exeC:\Windows\System32\services.exeACME\fthompson206414
740IT-WS-0322026-02-10T23:22:28.760Z667547011spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson262889
741IT-WS-0322026-02-16T15:18:00.681Z4739037709MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson234137
742IT-WS-0322026-02-11T21:22:28.959Z300189433OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson75150
743HR-WS-0332026-02-17T22:36:55.589Z5713213svchost.exeC:\Windows\System32\svchost.exeACME\dlee45364
744HR-WS-0332026-02-20T01:34:49.888Z4965821317explorer.exeC:\Windows\System32\explorer.exeACME\dlee125250
745HR-WS-0332026-02-10T10:37:10.004Z623462337chrome.exeC:\Windows\System32\chrome.exeACME\dlee261478
746HR-WS-0332026-02-15T03:03:12.970Z8289000msedge.exeC:\Windows\System32\msedge.exeACME\dlee191507
747HR-WS-0332026-02-19T06:01:00.454Z487374024outlook.exeC:\Windows\System32\outlook.exeACME\dlee250718
748HR-WS-0332026-02-18T17:13:59.320Z5530527590teams.exeC:\Windows\System32\teams.exeACME\dlee321625
749HR-WS-0332026-02-19T15:12:50.855Z3092650168code.exeC:\Windows\System32\code.exeACME\dlee230083
750HR-WS-0332026-02-12T20:48:33.550Z4556836996powershell.exeC:\Windows\System32\powershell.exeACME\dlee282840
751HR-WS-0332026-02-19T16:16:47.236Z454432636cmd.exeC:\Windows\System32\cmd.exeACME\dlee57789
752HR-WS-0332026-02-12T20:04:48.157Z1662423584notepad.exeC:\Windows\System32\notepad.exeACME\dlee291526
753HR-WS-0332026-02-16T12:35:03.151Z2482942638taskhostw.exeC:\Windows\System32\taskhostw.exeACME\dlee6146
754HR-WS-0332026-02-15T16:55:49.523Z776828597RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\dlee458595
755HR-WS-0332026-02-18T06:25:06.138Z471110254SearchHost.exeC:\Windows\System32\SearchHost.exeACME\dlee465436
756HR-WS-0332026-02-13T21:30:36.852Z255616lsass.exeC:\Windows\System32\lsass.exeACME\dlee4377
757HR-WS-0332026-02-14T12:38:08.738Z36821csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM451215
758HR-WS-0332026-02-16T18:26:40.368Z5058159400winlogon.exeC:\Windows\System32\winlogon.exeACME\dlee43427
759HR-WS-0332026-02-14T03:29:13.256Z6241922905dwm.exeC:\Windows\System32\dwm.exeACME\dlee464820
760HR-WS-0332026-02-19T23:59:07.737Z6087322801SystemSystemNT AUTHORITY\SYSTEM115865
761HR-WS-0332026-02-19T15:25:29.598Z5689538466smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM83219
762HR-WS-0332026-02-19T08:39:27.037Z567859514services.exeC:\Windows\System32\services.exeACME\dlee135313
763HR-WS-0332026-02-20T03:57:50.148Z2099423425spoolsv.exeC:\Windows\System32\spoolsv.exeACME\dlee178610
764HR-WS-0332026-02-12T05:22:27.850Z1207514001MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\dlee51311
765HR-WS-0332026-02-20T11:08:40.964Z2000348797OneDrive.exeC:\Windows\System32\OneDrive.exeACME\dlee323478
766FIN-WS-0342026-02-16T19:28:31.084Z55997svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql406620
767FIN-WS-0342026-02-14T05:24:17.994Z3757437756explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql45795
768FIN-WS-0342026-02-14T12:30:23.743Z5973329409chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql315437
769FIN-WS-0342026-02-20T02:26:27.389Z1314613771msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql126050
770FIN-WS-0342026-02-13T15:12:28.291Z362515286outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql307102
771FIN-WS-0342026-02-19T20:02:27.133Z2153938586teams.exeC:\Windows\System32\teams.exeACME\svc_sql253533
772FIN-WS-0342026-02-18T00:30:07.392Z96922986code.exeC:\Windows\System32\code.exeACME\svc_sql354294
773FIN-WS-0342026-02-16T13:26:03.543Z5016128631powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql372418
774FIN-WS-0342026-02-19T01:52:11.008Z4370953cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql432105
775FIN-WS-0342026-02-14T14:48:02.294Z5365813775notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql59730
776FIN-WS-0342026-02-10T23:55:32.216Z4275051563taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql74518
777FIN-WS-0342026-02-15T09:10:13.943Z3410655910RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql22538
778FIN-WS-0342026-02-15T13:37:21.305Z4629852982SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql60307
779FIN-WS-0342026-02-18T22:51:38.154Z428415lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql14062
780FIN-WS-0342026-02-16T08:28:35.926Z4511213csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM316188
781FIN-WS-0342026-02-15T20:35:30.490Z1512054679winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql37330
782FIN-WS-0342026-02-11T17:05:02.153Z1814820676dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql232132
783FIN-WS-0342026-02-15T17:51:39.184Z5837252879SystemSystemNT AUTHORITY\SYSTEM316905
784FIN-WS-0342026-02-19T14:11:57.437Z4975738136smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM208916
785FIN-WS-0342026-02-16T08:04:17.556Z894433216services.exeC:\Windows\System32\services.exeACME\svc_sql493422
786FIN-WS-0342026-02-18T11:12:12.053Z15472587spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql99114
787FIN-WS-0342026-02-10T22:06:07.070Z3630818902MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql76787
788FIN-WS-0342026-02-14T01:47:36.357Z499633029OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql169015
789SLS-WS-0352026-02-18T02:00:42.449Z367767svchost.exeC:\Windows\System32\svchost.exeACME\jsmith300369
790SLS-WS-0352026-02-17T03:09:10.669Z63889915explorer.exeC:\Windows\System32\explorer.exeACME\jsmith29008
791SLS-WS-0352026-02-17T22:23:21.390Z1731446086chrome.exeC:\Windows\System32\chrome.exeACME\jsmith186561
792SLS-WS-0352026-02-16T05:48:51.546Z4887834722msedge.exeC:\Windows\System32\msedge.exeACME\jsmith171915
793SLS-WS-0352026-02-20T01:56:10.263Z1736540290outlook.exeC:\Windows\System32\outlook.exeACME\jsmith36655
794SLS-WS-0352026-02-13T04:05:06.073Z3600917914teams.exeC:\Windows\System32\teams.exeACME\jsmith9125
795SLS-WS-0352026-02-12T20:27:11.030Z3904357371code.exeC:\Windows\System32\code.exeACME\jsmith495827
796SLS-WS-0352026-02-14T18:58:02.229Z6173254492powershell.exeC:\Windows\System32\powershell.exeACME\jsmith162426
797SLS-WS-0352026-02-16T19:33:05.145Z301844647cmd.exeC:\Windows\System32\cmd.exeACME\jsmith98933
798SLS-WS-0352026-02-17T00:21:59.881Z5937532840notepad.exeC:\Windows\System32\notepad.exeACME\jsmith494961
799SLS-WS-0352026-02-20T06:13:27.266Z347145145taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith133924
800SLS-WS-0352026-02-13T12:30:47.849Z3354630073RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith248448
801SLS-WS-0352026-02-14T11:46:39.536Z252022136SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith81332
802SLS-WS-0352026-02-19T06:28:30.690Z148481lsass.exeC:\Windows\System32\lsass.exeACME\jsmith486829
803SLS-WS-0352026-02-19T00:25:15.492Z477282csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM206805
804SLS-WS-0352026-02-17T02:10:52.918Z54438400winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith162888
805SLS-WS-0352026-02-14T09:50:03.386Z1793941135dwm.exeC:\Windows\System32\dwm.exeACME\jsmith57681
806SLS-WS-0352026-02-19T06:45:55.721Z23739788SystemSystemNT AUTHORITY\SYSTEM73652
807SLS-WS-0352026-02-19T18:57:46.270Z5515358398smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM353758
808SLS-WS-0352026-02-12T15:17:32.537Z5112947663services.exeC:\Windows\System32\services.exeACME\jsmith176414
809SLS-WS-0352026-02-14T10:40:59.285Z354927431spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith197618
810SLS-WS-0352026-02-14T20:11:28.786Z5644424751MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith30014
811SLS-WS-0352026-02-14T02:01:12.265Z5557254493OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith183951
812ENG-WS-0362026-02-17T00:58:47.865Z3361012svchost.exeC:\Windows\System32\svchost.exeACME\svc_web366050
813ENG-WS-0362026-02-13T18:27:26.176Z3010028162explorer.exeC:\Windows\System32\explorer.exeACME\svc_web283000
814ENG-WS-0362026-02-12T13:11:24.402Z5851237749chrome.exeC:\Windows\System32\chrome.exeACME\svc_web422775
815ENG-WS-0362026-02-17T14:53:10.650Z3131437647msedge.exeC:\Windows\System32\msedge.exeACME\svc_web131388
816ENG-WS-0362026-02-19T23:41:11.876Z383496405outlook.exeC:\Windows\System32\outlook.exeACME\svc_web162705
817ENG-WS-0362026-02-12T16:26:16.544Z3204917568teams.exeC:\Windows\System32\teams.exeACME\svc_web80697
818ENG-WS-0362026-02-19T02:49:58.683Z5753137255code.exeC:\Windows\System32\code.exeACME\svc_web22869
819ENG-WS-0362026-02-13T17:24:05.811Z4629912597powershell.exeC:\Windows\System32\powershell.exeACME\svc_web80928
820ENG-WS-0362026-02-18T13:41:06.754Z551645575cmd.exeC:\Windows\System32\cmd.exeACME\svc_web407894
821ENG-WS-0362026-02-19T23:59:11.474Z3722748067notepad.exeC:\Windows\System32\notepad.exeACME\svc_web204240
822ENG-WS-0362026-02-10T12:34:11.172Z5305455596taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_web66428
823ENG-WS-0362026-02-15T01:53:32.128Z18639149RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_web476300
824ENG-WS-0362026-02-15T12:16:20.964Z5133117925SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_web477749
825ENG-WS-0362026-02-12T06:49:22.682Z5018310lsass.exeC:\Windows\System32\lsass.exeACME\svc_web355220
826ENG-WS-0362026-02-12T02:05:03.228Z428508csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM53825
827ENG-WS-0362026-02-16T22:05:11.233Z496753407winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_web26809
828ENG-WS-0362026-02-17T02:00:31.393Z867028729dwm.exeC:\Windows\System32\dwm.exeACME\svc_web400486
829ENG-WS-0362026-02-12T18:38:18.543Z442548859SystemSystemNT AUTHORITY\SYSTEM236963
830ENG-WS-0362026-02-20T00:57:04.382Z1269241545smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM58206
831ENG-WS-0362026-02-20T05:05:39.123Z5140014465services.exeC:\Windows\System32\services.exeACME\svc_web414618
832ENG-WS-0362026-02-16T17:01:04.321Z16439587spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_web282693
833ENG-WS-0362026-02-20T17:10:30.575Z160496505MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_web195007
834ENG-WS-0362026-02-12T22:28:21.499Z6420910748OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_web280999
835LEG-WS-0372026-02-13T13:10:19.826Z9567svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql114725
836LEG-WS-0372026-02-18T00:27:05.908Z5254212950explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql95748
837LEG-WS-0372026-02-13T02:04:02.273Z3384929130chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql81454
838LEG-WS-0372026-02-14T16:12:41.455Z5273323981msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql212527
839LEG-WS-0372026-02-19T18:50:12.787Z6330359009outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql206904
840LEG-WS-0372026-02-15T20:52:08.325Z2722749934teams.exeC:\Windows\System32\teams.exeACME\svc_sql393148
841LEG-WS-0372026-02-19T22:02:26.997Z4324821966code.exeC:\Windows\System32\code.exeACME\svc_sql22381
842LEG-WS-0372026-02-17T18:52:56.473Z21563351powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql476773
843LEG-WS-0372026-02-17T04:23:54.531Z3654837833cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql483759
844LEG-WS-0372026-02-18T04:24:56.429Z5780445945notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql286486
845LEG-WS-0372026-02-15T05:16:47.606Z769121571taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql196304
846LEG-WS-0372026-02-10T21:17:03.075Z5679958590RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql49536
847LEG-WS-0372026-02-13T03:23:22.936Z5601720676SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql359950
848LEG-WS-0372026-02-15T01:30:51.002Z3571811lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql56879
849LEG-WS-0372026-02-20T08:20:40.820Z367882csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM239100
850LEG-WS-0372026-02-17T18:06:21.513Z4079759791winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql144542
851LEG-WS-0372026-02-19T21:56:10.512Z4068147547dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql419985
852LEG-WS-0372026-02-15T20:37:33.381Z1858457765SystemSystemNT AUTHORITY\SYSTEM273453
853LEG-WS-0372026-02-11T12:36:53.109Z5720352985smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM352142
854LEG-WS-0372026-02-16T22:39:01.715Z4975655341services.exeC:\Windows\System32\services.exeACME\svc_sql413695
855LEG-WS-0372026-02-20T06:47:31.692Z551537580spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql143158
856LEG-WS-0372026-02-11T07:09:51.084Z2812826730MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql313825
857LEG-WS-0372026-02-13T21:16:52.565Z4321039022OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql58969
858MKT-WS-0382026-02-19T21:40:39.868Z34414svchost.exeC:\Windows\System32\svchost.exeACME\jsmith218617
859MKT-WS-0382026-02-19T19:40:29.480Z553749373explorer.exeC:\Windows\System32\explorer.exeACME\jsmith205962
860MKT-WS-0382026-02-16T02:19:16.270Z2816235248chrome.exeC:\Windows\System32\chrome.exeACME\jsmith153326
861MKT-WS-0382026-02-13T14:25:32.175Z5624251465msedge.exeC:\Windows\System32\msedge.exeACME\jsmith175365
862MKT-WS-0382026-02-19T10:26:36.630Z1549751039outlook.exeC:\Windows\System32\outlook.exeACME\jsmith360150
863MKT-WS-0382026-02-15T12:24:22.855Z2625114506teams.exeC:\Windows\System32\teams.exeACME\jsmith421855
864MKT-WS-0382026-02-14T20:23:23.612Z3262427989code.exeC:\Windows\System32\code.exeACME\jsmith317951
865MKT-WS-0382026-02-14T00:02:55.754Z4077958391powershell.exeC:\Windows\System32\powershell.exeACME\jsmith315348
866MKT-WS-0382026-02-17T05:40:35.853Z308511154cmd.exeC:\Windows\System32\cmd.exeACME\jsmith145482
867MKT-WS-0382026-02-18T15:22:56.326Z1855350817notepad.exeC:\Windows\System32\notepad.exeACME\jsmith123178
868MKT-WS-0382026-02-16T04:15:41.605Z5869352667taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith438671
869MKT-WS-0382026-02-12T06:08:14.179Z2814111962RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith225964
870MKT-WS-0382026-02-15T15:35:34.998Z6383317753SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith163409
871MKT-WS-0382026-02-15T19:37:23.259Z403324lsass.exeC:\Windows\System32\lsass.exeACME\jsmith206586
872MKT-WS-0382026-02-14T08:13:54.504Z643610csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM84999
873MKT-WS-0382026-02-12T18:25:27.246Z3605733964winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith115278
874MKT-WS-0382026-02-15T22:22:26.815Z4678322064dwm.exeC:\Windows\System32\dwm.exeACME\jsmith32378
875MKT-WS-0382026-02-18T03:58:00.096Z4330124613SystemSystemNT AUTHORITY\SYSTEM106282
876MKT-WS-0382026-02-14T02:11:30.642Z578243239smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM331298
877MKT-WS-0382026-02-17T09:23:20.775Z131845161services.exeC:\Windows\System32\services.exeACME\jsmith104295
878MKT-WS-0382026-02-11T12:25:14.410Z2274328344spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith58315
879MKT-WS-0382026-02-19T16:10:26.314Z6211229216MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith86931
880MKT-WS-0382026-02-13T08:22:56.575Z3189433310OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith99411
881EXEC-WS-0392026-02-18T13:10:47.435Z6419619svchost.exeC:\Windows\System32\svchost.exeACME\gwhite234654
882EXEC-WS-0392026-02-12T03:55:40.047Z1129449130explorer.exeC:\Windows\System32\explorer.exeACME\gwhite404630
883EXEC-WS-0392026-02-18T17:34:55.539Z4077158354chrome.exeC:\Windows\System32\chrome.exeACME\gwhite58823
884EXEC-WS-0392026-02-14T07:03:57.331Z3172650146msedge.exeC:\Windows\System32\msedge.exeACME\gwhite320918
885EXEC-WS-0392026-02-14T13:49:44.342Z4590556966outlook.exeC:\Windows\System32\outlook.exeACME\gwhite85161
886EXEC-WS-0392026-02-13T22:33:39.811Z5784511251teams.exeC:\Windows\System32\teams.exeACME\gwhite287434
887EXEC-WS-0392026-02-20T04:45:00.376Z2245543765code.exeC:\Windows\System32\code.exeACME\gwhite497893
888EXEC-WS-0392026-02-13T04:20:27.436Z6124453441powershell.exeC:\Windows\System32\powershell.exeACME\gwhite104323
889EXEC-WS-0392026-02-16T22:38:50.763Z797214220cmd.exeC:\Windows\System32\cmd.exeACME\gwhite394908
890EXEC-WS-0392026-02-17T10:22:10.990Z2068445727notepad.exeC:\Windows\System32\notepad.exeACME\gwhite260849
891EXEC-WS-0392026-02-15T19:55:51.111Z200491090taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite162213
892EXEC-WS-0392026-02-10T14:54:09.197Z2939318048RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite237804
893EXEC-WS-0392026-02-15T07:10:05.667Z1289940082SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite302335
894EXEC-WS-0392026-02-11T10:05:18.619Z4128614lsass.exeC:\Windows\System32\lsass.exeACME\gwhite256406
895EXEC-WS-0392026-02-13T21:23:14.017Z2285414csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM255358
896EXEC-WS-0392026-02-18T18:30:11.232Z3875137569winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite30158
897EXEC-WS-0392026-02-15T14:41:47.194Z253228272dwm.exeC:\Windows\System32\dwm.exeACME\gwhite128381
898EXEC-WS-0392026-02-13T01:38:08.003Z4864719050SystemSystemNT AUTHORITY\SYSTEM173411
899EXEC-WS-0392026-02-15T14:30:34.832Z82475757smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM314191
900EXEC-WS-0392026-02-13T19:26:08.486Z2082617185services.exeC:\Windows\System32\services.exeACME\gwhite41880
901EXEC-WS-0392026-02-20T05:16:34.613Z3844058944spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite67104
902EXEC-WS-0392026-02-14T04:16:56.745Z190656946MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite68847
903EXEC-WS-0392026-02-12T19:13:24.377Z3377728410OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite287889
904IT-WS-0402026-02-19T03:13:27.521Z6319814svchost.exeC:\Windows\System32\svchost.exeACME\agarcia46704
905IT-WS-0402026-02-10T19:59:19.176Z4406429684explorer.exeC:\Windows\System32\explorer.exeACME\agarcia437229
906IT-WS-0402026-02-14T07:09:30.865Z4270343845chrome.exeC:\Windows\System32\chrome.exeACME\agarcia319182
907IT-WS-0402026-02-13T12:04:17.686Z597457787msedge.exeC:\Windows\System32\msedge.exeACME\agarcia171640
908IT-WS-0402026-02-15T11:03:48.822Z1401616185outlook.exeC:\Windows\System32\outlook.exeACME\agarcia184286
909IT-WS-0402026-02-10T13:01:03.417Z5535611845teams.exeC:\Windows\System32\teams.exeACME\agarcia430414
910IT-WS-0402026-02-16T17:15:20.128Z2365425080code.exeC:\Windows\System32\code.exeACME\agarcia145774
911IT-WS-0402026-02-11T11:17:38.498Z2863344217powershell.exeC:\Windows\System32\powershell.exeACME\agarcia360099
912IT-WS-0402026-02-20T16:25:57.846Z6203819681cmd.exeC:\Windows\System32\cmd.exeACME\agarcia184893
913IT-WS-0402026-02-12T16:58:30.241Z5784331166notepad.exeC:\Windows\System32\notepad.exeACME\agarcia250150
914IT-WS-0402026-02-20T10:56:17.590Z2798258792taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia142649
915IT-WS-0402026-02-16T18:46:22.883Z57247537RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia106724
916IT-WS-0402026-02-16T21:19:21.083Z176064799SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia266748
917IT-WS-0402026-02-16T18:39:42.348Z46081lsass.exeC:\Windows\System32\lsass.exeACME\agarcia256332
918IT-WS-0402026-02-14T05:35:04.834Z739219csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM337802
919IT-WS-0402026-02-20T07:15:49.631Z679343156winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia474778
920IT-WS-0402026-02-13T13:54:25.578Z226976762dwm.exeC:\Windows\System32\dwm.exeACME\agarcia188946
921IT-WS-0402026-02-16T09:36:18.306Z656418435SystemSystemNT AUTHORITY\SYSTEM363082
922IT-WS-0402026-02-13T17:43:22.578Z4279723636smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM407243
923IT-WS-0402026-02-15T09:35:02.808Z1251435662services.exeC:\Windows\System32\services.exeACME\agarcia112529
924IT-WS-0402026-02-10T17:04:14.258Z2524336082spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia458232
925IT-WS-0402026-02-16T12:41:30.427Z3070511558MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia224548
926IT-WS-0402026-02-19T03:13:33.496Z477105204OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia272322
927IT-WS-0402026-02-12T20:18:39.380Z4410834085steam.exeC:\Users\agarcia\AppData\Local\steam\steam.exeACME\agarcia85957
928HR-WS-0412026-02-13T13:44:00.549Z5434918svchost.exeC:\Windows\System32\svchost.exeACME\fthompson74382
929HR-WS-0412026-02-17T18:22:46.651Z5630330797explorer.exeC:\Windows\System32\explorer.exeACME\fthompson103457
930HR-WS-0412026-02-10T13:47:57.321Z4283858123chrome.exeC:\Windows\System32\chrome.exeACME\fthompson312720
931HR-WS-0412026-02-15T01:55:07.350Z396932161msedge.exeC:\Windows\System32\msedge.exeACME\fthompson10191
932HR-WS-0412026-02-17T20:51:56.383Z5171820529outlook.exeC:\Windows\System32\outlook.exeACME\fthompson202962
933HR-WS-0412026-02-13T21:05:46.665Z1815316532teams.exeC:\Windows\System32\teams.exeACME\fthompson124809
934HR-WS-0412026-02-10T09:42:49.418Z153543550code.exeC:\Windows\System32\code.exeACME\fthompson353118
935HR-WS-0412026-02-14T01:24:15.839Z26917251powershell.exeC:\Windows\System32\powershell.exeACME\fthompson380463
936HR-WS-0412026-02-16T16:33:06.544Z825144276cmd.exeC:\Windows\System32\cmd.exeACME\fthompson25968
937HR-WS-0412026-02-19T01:39:33.740Z336295581notepad.exeC:\Windows\System32\notepad.exeACME\fthompson252371
938HR-WS-0412026-02-10T21:11:23.434Z1522313928taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson94006
939HR-WS-0412026-02-18T22:02:03.405Z3240741921RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson126412
940HR-WS-0412026-02-18T17:56:33.689Z469259190SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson240612
941HR-WS-0412026-02-12T11:40:55.852Z121156lsass.exeC:\Windows\System32\lsass.exeACME\fthompson261199
942HR-WS-0412026-02-16T17:16:37.569Z1464714csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM170880
943HR-WS-0412026-02-18T23:47:13.729Z398317252winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson77644
944HR-WS-0412026-02-14T08:27:34.958Z6018342632dwm.exeC:\Windows\System32\dwm.exeACME\fthompson24535
945HR-WS-0412026-02-10T20:01:05.763Z2185438447SystemSystemNT AUTHORITY\SYSTEM244465
946HR-WS-0412026-02-12T12:42:39.859Z1542323472smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM443183
947HR-WS-0412026-02-14T16:34:52.028Z933010867services.exeC:\Windows\System32\services.exeACME\fthompson433246
948HR-WS-0412026-02-14T03:30:46.977Z4315059795spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson310199
949HR-WS-0412026-02-20T09:19:58.987Z136023535MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson428939
950HR-WS-0412026-02-19T07:18:13.423Z5000222642OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson296373
951FIN-WS-0422026-02-19T02:52:02.076Z5048810svchost.exeC:\Windows\System32\svchost.exeACME\cjohnson51643
952FIN-WS-0422026-02-17T04:38:51.642Z1286244470explorer.exeC:\Windows\System32\explorer.exeACME\cjohnson425358
953FIN-WS-0422026-02-14T20:35:09.167Z4037638596chrome.exeC:\Windows\System32\chrome.exeACME\cjohnson77080
954FIN-WS-0422026-02-16T22:21:50.066Z276783982msedge.exeC:\Windows\System32\msedge.exeACME\cjohnson433020
955FIN-WS-0422026-02-10T14:22:31.297Z415846959outlook.exeC:\Windows\System32\outlook.exeACME\cjohnson295498
956FIN-WS-0422026-02-15T02:35:52.453Z4087346406teams.exeC:\Windows\System32\teams.exeACME\cjohnson245893
957FIN-WS-0422026-02-10T10:46:04.035Z1682857934code.exeC:\Windows\System32\code.exeACME\cjohnson165784
958FIN-WS-0422026-02-17T03:40:52.645Z597917032powershell.exeC:\Windows\System32\powershell.exeACME\cjohnson128088
959FIN-WS-0422026-02-14T08:41:16.595Z760055966cmd.exeC:\Windows\System32\cmd.exeACME\cjohnson48801
960FIN-WS-0422026-02-16T16:00:09.582Z519474612notepad.exeC:\Windows\System32\notepad.exeACME\cjohnson449091
961FIN-WS-0422026-02-12T10:01:42.962Z593346054taskhostw.exeC:\Windows\System32\taskhostw.exeACME\cjohnson193535
962FIN-WS-0422026-02-17T19:17:46.840Z2761720447RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\cjohnson337044
963FIN-WS-0422026-02-11T23:05:51.430Z6419649986SearchHost.exeC:\Windows\System32\SearchHost.exeACME\cjohnson190137
964FIN-WS-0422026-02-19T13:18:17.628Z6066810lsass.exeC:\Windows\System32\lsass.exeACME\cjohnson91901
965FIN-WS-0422026-02-10T18:32:13.492Z281502csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM67695
966FIN-WS-0422026-02-17T01:28:55.454Z3549049414winlogon.exeC:\Windows\System32\winlogon.exeACME\cjohnson346470
967FIN-WS-0422026-02-12T07:20:05.362Z1210311061dwm.exeC:\Windows\System32\dwm.exeACME\cjohnson137208
968FIN-WS-0422026-02-19T04:44:03.049Z1344623692SystemSystemNT AUTHORITY\SYSTEM320428
969FIN-WS-0422026-02-12T06:54:24.044Z5994840471smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM339859
970FIN-WS-0422026-02-19T22:56:55.054Z3921821018services.exeC:\Windows\System32\services.exeACME\cjohnson158631
971FIN-WS-0422026-02-19T18:10:24.602Z2417057510spoolsv.exeC:\Windows\System32\spoolsv.exeACME\cjohnson297368
972FIN-WS-0422026-02-13T17:30:34.846Z1105910298MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\cjohnson337075
973FIN-WS-0422026-02-19T08:47:54.868Z3172618366OneDrive.exeC:\Windows\System32\OneDrive.exeACME\cjohnson169887
974SLS-WS-0432026-02-15T02:36:18.291Z4090715svchost.exeC:\Windows\System32\svchost.exeACME\dlee209768
975SLS-WS-0432026-02-11T09:32:00.832Z2410020723explorer.exeC:\Windows\System32\explorer.exeACME\dlee270986
976SLS-WS-0432026-02-18T18:34:15.673Z5554351018chrome.exeC:\Windows\System32\chrome.exeACME\dlee353970
977SLS-WS-0432026-02-17T07:49:09.223Z5825140596msedge.exeC:\Windows\System32\msedge.exeACME\dlee229424
978SLS-WS-0432026-02-12T07:02:03.593Z1332835231outlook.exeC:\Windows\System32\outlook.exeACME\dlee258162
979SLS-WS-0432026-02-13T22:45:50.842Z2682827849teams.exeC:\Windows\System32\teams.exeACME\dlee239084
980SLS-WS-0432026-02-11T04:04:15.919Z391613874code.exeC:\Windows\System32\code.exeACME\dlee2729
981SLS-WS-0432026-02-11T15:54:18.229Z522911087powershell.exeC:\Windows\System32\powershell.exeACME\dlee38451
982SLS-WS-0432026-02-17T01:00:08.026Z1618114812cmd.exeC:\Windows\System32\cmd.exeACME\dlee490074
983SLS-WS-0432026-02-15T11:15:11.543Z4596333905notepad.exeC:\Windows\System32\notepad.exeACME\dlee413128
984SLS-WS-0432026-02-18T10:15:27.124Z1387642108taskhostw.exeC:\Windows\System32\taskhostw.exeACME\dlee412676
985SLS-WS-0432026-02-11T02:25:27.537Z1725211801RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\dlee151622
986SLS-WS-0432026-02-12T13:37:13.840Z4840633610SearchHost.exeC:\Windows\System32\SearchHost.exeACME\dlee416658
987SLS-WS-0432026-02-17T08:58:27.803Z2210610lsass.exeC:\Windows\System32\lsass.exeACME\dlee398352
988SLS-WS-0432026-02-13T08:08:04.701Z2182815csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM266565
989SLS-WS-0432026-02-16T21:10:35.978Z3459646772winlogon.exeC:\Windows\System32\winlogon.exeACME\dlee325260
990SLS-WS-0432026-02-15T18:05:07.202Z2794958136dwm.exeC:\Windows\System32\dwm.exeACME\dlee105984
991SLS-WS-0432026-02-11T15:47:55.140Z3692645525SystemSystemNT AUTHORITY\SYSTEM80029
992SLS-WS-0432026-02-13T07:35:16.882Z2445656958smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM19855
993SLS-WS-0432026-02-12T08:04:23.568Z4094556272services.exeC:\Windows\System32\services.exeACME\dlee180119
994SLS-WS-0432026-02-20T00:59:31.322Z4527016411spoolsv.exeC:\Windows\System32\spoolsv.exeACME\dlee179084
995SLS-WS-0432026-02-13T23:59:34.698Z114294298MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\dlee258023
996SLS-WS-0432026-02-20T14:14:54.040Z1292444682OneDrive.exeC:\Windows\System32\OneDrive.exeACME\dlee415082
997ENG-WS-0442026-02-20T06:12:49.153Z149214svchost.exeC:\Windows\System32\svchost.exeACME\svc_web380481
998ENG-WS-0442026-02-16T05:16:06.924Z3771842064explorer.exeC:\Windows\System32\explorer.exeACME\svc_web374781
999ENG-WS-0442026-02-20T11:01:51.299Z4826010037chrome.exeC:\Windows\System32\chrome.exeACME\svc_web135113
1000ENG-WS-0442026-02-20T08:37:17.253Z309166785msedge.exeC:\Windows\System32\msedge.exeACME\svc_web250493
1001ENG-WS-0442026-02-14T15:48:16.731Z5118621129outlook.exeC:\Windows\System32\outlook.exeACME\svc_web56283
1002ENG-WS-0442026-02-10T19:36:21.947Z122635852teams.exeC:\Windows\System32\teams.exeACME\svc_web478128
1003ENG-WS-0442026-02-18T16:12:19.483Z51352649code.exeC:\Windows\System32\code.exeACME\svc_web430548
1004ENG-WS-0442026-02-12T04:52:39.580Z142710738powershell.exeC:\Windows\System32\powershell.exeACME\svc_web54815
1005ENG-WS-0442026-02-12T12:24:43.725Z470069267cmd.exeC:\Windows\System32\cmd.exeACME\svc_web178364
1006ENG-WS-0442026-02-11T10:39:08.538Z6309123915notepad.exeC:\Windows\System32\notepad.exeACME\svc_web51635
1007ENG-WS-0442026-02-14T16:22:49.071Z5647153389taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_web269472
1008ENG-WS-0442026-02-12T07:45:26.822Z148109038RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_web292259
1009ENG-WS-0442026-02-13T00:50:27.132Z2337159817SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_web138260
1010ENG-WS-0442026-02-20T01:52:11.040Z640745lsass.exeC:\Windows\System32\lsass.exeACME\svc_web215606
1011ENG-WS-0442026-02-16T20:58:38.198Z537638csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM217271
1012ENG-WS-0442026-02-11T15:54:12.794Z4884749024winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_web155674
1013ENG-WS-0442026-02-12T10:43:41.204Z1740621034dwm.exeC:\Windows\System32\dwm.exeACME\svc_web249958
1014ENG-WS-0442026-02-17T01:30:01.849Z707322125SystemSystemNT AUTHORITY\SYSTEM140836
1015ENG-WS-0442026-02-19T00:41:04.815Z211928268smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM206946
1016ENG-WS-0442026-02-19T07:28:05.073Z3211435722services.exeC:\Windows\System32\services.exeACME\svc_web259887
1017ENG-WS-0442026-02-18T18:27:00.314Z3617432870spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_web402514
1018ENG-WS-0442026-02-17T09:44:54.641Z544695241MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_web335974
1019ENG-WS-0442026-02-16T15:22:32.607Z2323150009OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_web110104
1020LEG-WS-0452026-02-12T08:55:22.667Z196636svchost.exeC:\Windows\System32\svchost.exeACME\hbrown92718
1021LEG-WS-0452026-02-14T10:18:39.841Z4638545066explorer.exeC:\Windows\System32\explorer.exeACME\hbrown178072
1022LEG-WS-0452026-02-13T03:10:45.750Z2338652076chrome.exeC:\Windows\System32\chrome.exeACME\hbrown321274
1023LEG-WS-0452026-02-12T11:54:20.926Z446952762msedge.exeC:\Windows\System32\msedge.exeACME\hbrown377077
1024LEG-WS-0452026-02-18T00:01:27.927Z2545553999outlook.exeC:\Windows\System32\outlook.exeACME\hbrown371013
1025LEG-WS-0452026-02-10T16:46:27.751Z124385772teams.exeC:\Windows\System32\teams.exeACME\hbrown461735
1026LEG-WS-0452026-02-14T23:06:28.503Z5598622462code.exeC:\Windows\System32\code.exeACME\hbrown298595
1027LEG-WS-0452026-02-12T03:59:49.553Z2991816309powershell.exeC:\Windows\System32\powershell.exeACME\hbrown369705
1028LEG-WS-0452026-02-14T00:30:06.662Z360266666cmd.exeC:\Windows\System32\cmd.exeACME\hbrown179666
1029LEG-WS-0452026-02-15T01:31:03.383Z222869120notepad.exeC:\Windows\System32\notepad.exeACME\hbrown493478
1030LEG-WS-0452026-02-15T05:19:27.241Z3674647913taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown335960
1031LEG-WS-0452026-02-16T21:30:02.358Z5109910693RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown4482
1032LEG-WS-0452026-02-19T11:42:37.952Z5773712037SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown173898
1033LEG-WS-0452026-02-10T13:28:31.111Z2824710lsass.exeC:\Windows\System32\lsass.exeACME\hbrown355393
1034LEG-WS-0452026-02-10T11:38:08.721Z383258csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM321866
1035LEG-WS-0452026-02-15T21:31:06.845Z4989740465winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown267797
1036LEG-WS-0452026-02-16T13:55:36.492Z398825231dwm.exeC:\Windows\System32\dwm.exeACME\hbrown196623
1037LEG-WS-0452026-02-17T13:57:56.597Z91531668SystemSystemNT AUTHORITY\SYSTEM229942
1038LEG-WS-0452026-02-20T15:48:00.337Z3256937388smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM299607
1039LEG-WS-0452026-02-16T05:33:09.338Z3754939860services.exeC:\Windows\System32\services.exeACME\hbrown351186
1040LEG-WS-0452026-02-20T17:38:41.709Z344807193spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown339755
1041LEG-WS-0452026-02-19T15:39:38.195Z818258224MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown298900
1042LEG-WS-0452026-02-20T10:30:29.180Z1913136928OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown478752
1043MKT-WS-0462026-02-12T03:19:52.892Z255784svchost.exeC:\Windows\System32\svchost.exeACME\dlee346759
1044MKT-WS-0462026-02-17T13:59:01.018Z557039331explorer.exeC:\Windows\System32\explorer.exeACME\dlee5626
1045MKT-WS-0462026-02-13T08:16:05.497Z24669407chrome.exeC:\Windows\System32\chrome.exeACME\dlee190966
1046MKT-WS-0462026-02-15T11:36:35.955Z221757510msedge.exeC:\Windows\System32\msedge.exeACME\dlee479599
1047MKT-WS-0462026-02-18T06:07:53.967Z2152134159outlook.exeC:\Windows\System32\outlook.exeACME\dlee476045
1048MKT-WS-0462026-02-19T22:30:14.475Z1437058993teams.exeC:\Windows\System32\teams.exeACME\dlee238569
1049MKT-WS-0462026-02-12T11:05:29.728Z1391121938code.exeC:\Windows\System32\code.exeACME\dlee87961
1050MKT-WS-0462026-02-10T16:33:54.487Z5774131132powershell.exeC:\Windows\System32\powershell.exeACME\dlee265629
1051MKT-WS-0462026-02-16T12:17:05.057Z5090253507cmd.exeC:\Windows\System32\cmd.exeACME\dlee211700
1052MKT-WS-0462026-02-15T13:24:20.311Z2686428574notepad.exeC:\Windows\System32\notepad.exeACME\dlee425323
1053MKT-WS-0462026-02-14T04:14:39.019Z5826735033taskhostw.exeC:\Windows\System32\taskhostw.exeACME\dlee283792
1054MKT-WS-0462026-02-13T03:08:44.365Z5471348994RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\dlee37513
1055MKT-WS-0462026-02-12T00:23:29.376Z592525345SearchHost.exeC:\Windows\System32\SearchHost.exeACME\dlee36165
1056MKT-WS-0462026-02-14T00:37:58.198Z399113lsass.exeC:\Windows\System32\lsass.exeACME\dlee445781
1057MKT-WS-0462026-02-13T12:10:26.968Z495483csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM323855
1058MKT-WS-0462026-02-15T03:24:51.974Z1668455305winlogon.exeC:\Windows\System32\winlogon.exeACME\dlee413670
1059MKT-WS-0462026-02-17T23:30:53.422Z4031526483dwm.exeC:\Windows\System32\dwm.exeACME\dlee359852
1060MKT-WS-0462026-02-18T03:15:46.515Z5190219117SystemSystemNT AUTHORITY\SYSTEM42008
1061MKT-WS-0462026-02-14T00:24:59.926Z129322376smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM260688
1062MKT-WS-0462026-02-10T19:17:49.322Z445143551services.exeC:\Windows\System32\services.exeACME\dlee108454
1063MKT-WS-0462026-02-20T17:34:18.719Z446853706spoolsv.exeC:\Windows\System32\spoolsv.exeACME\dlee406057
1064MKT-WS-0462026-02-13T18:38:02.357Z953030308MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\dlee218262
1065MKT-WS-0462026-02-19T22:10:01.236Z281936618OneDrive.exeC:\Windows\System32\OneDrive.exeACME\dlee287176
1066EXEC-WS-0472026-02-14T07:45:39.722Z2177018svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql237669
1067EXEC-WS-0472026-02-20T15:09:51.581Z3993912489explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql455922
1068EXEC-WS-0472026-02-12T10:57:09.087Z3427019721chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql473732
1069EXEC-WS-0472026-02-11T08:57:23.818Z1065812443msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql298490
1070EXEC-WS-0472026-02-13T19:21:20.382Z1822350506outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql389933
1071EXEC-WS-0472026-02-13T22:24:14.892Z674611163teams.exeC:\Windows\System32\teams.exeACME\svc_sql457060
1072EXEC-WS-0472026-02-14T20:18:36.989Z6335936027code.exeC:\Windows\System32\code.exeACME\svc_sql223459
1073EXEC-WS-0472026-02-20T10:14:00.309Z920642219powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql3590
1074EXEC-WS-0472026-02-19T15:50:42.336Z4968441031cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql57377
1075EXEC-WS-0472026-02-17T10:31:55.501Z362463016notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql26059
1076EXEC-WS-0472026-02-19T10:12:01.313Z4291337733taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql378804
1077EXEC-WS-0472026-02-18T23:04:28.943Z4786647828RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql307600
1078EXEC-WS-0472026-02-11T15:01:56.927Z766520872SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql159350
1079EXEC-WS-0472026-02-13T08:57:09.260Z489344lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql188862
1080EXEC-WS-0472026-02-16T03:35:20.290Z517132csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM8501
1081EXEC-WS-0472026-02-17T16:00:31.795Z436965290winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql354656
1082EXEC-WS-0472026-02-16T21:18:42.572Z1754831504dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql375984
1083EXEC-WS-0472026-02-17T12:00:43.851Z1068739513SystemSystemNT AUTHORITY\SYSTEM477535
1084EXEC-WS-0472026-02-14T15:39:37.559Z1446351453smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM38858
1085EXEC-WS-0472026-02-12T02:56:23.422Z5836212068services.exeC:\Windows\System32\services.exeACME\svc_sql216994
1086EXEC-WS-0472026-02-11T17:54:51.380Z1997129737spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql363878
1087EXEC-WS-0472026-02-12T14:48:09.137Z1759445275MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql302432
1088EXEC-WS-0472026-02-12T04:34:35.098Z4858356668OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql179581
1089IT-WS-0482026-02-19T03:48:45.048Z261721svchost.exeC:\Windows\System32\svchost.exeACME\svc_backup67342
1090IT-WS-0482026-02-15T22:13:01.620Z167131814explorer.exeC:\Windows\System32\explorer.exeACME\svc_backup44884
1091IT-WS-0482026-02-17T16:57:33.445Z2982318658chrome.exeC:\Windows\System32\chrome.exeACME\svc_backup145961
1092IT-WS-0482026-02-17T08:10:25.766Z915924178msedge.exeC:\Windows\System32\msedge.exeACME\svc_backup488139
1093IT-WS-0482026-02-17T15:27:05.862Z3753445928outlook.exeC:\Windows\System32\outlook.exeACME\svc_backup384940
1094IT-WS-0482026-02-14T12:02:27.812Z5286655847teams.exeC:\Windows\System32\teams.exeACME\svc_backup342515
1095IT-WS-0482026-02-16T20:26:08.065Z2221349348code.exeC:\Windows\System32\code.exeACME\svc_backup238109
1096IT-WS-0482026-02-20T04:46:05.697Z5210253384powershell.exeC:\Windows\System32\powershell.exeACME\svc_backup227783
1097IT-WS-0482026-02-12T04:13:55.185Z3307256208cmd.exeC:\Windows\System32\cmd.exeACME\svc_backup299024
1098IT-WS-0482026-02-17T01:52:44.649Z651536019notepad.exeC:\Windows\System32\notepad.exeACME\svc_backup54557
1099IT-WS-0482026-02-13T12:39:54.297Z1094310088taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_backup404318
1100IT-WS-0482026-02-11T14:43:56.722Z2527725646RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_backup137160
1101IT-WS-0482026-02-18T10:50:09.383Z5801510557SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_backup282512
1102IT-WS-0482026-02-18T17:03:03.296Z266420lsass.exeC:\Windows\System32\lsass.exeACME\svc_backup1863
1103IT-WS-0482026-02-16T15:59:42.439Z106771csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM442508
1104IT-WS-0482026-02-17T16:29:00.153Z3077338564winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_backup319473
1105IT-WS-0482026-02-12T21:42:33.561Z2862944276dwm.exeC:\Windows\System32\dwm.exeACME\svc_backup455468
1106IT-WS-0482026-02-18T23:45:16.333Z599896752SystemSystemNT AUTHORITY\SYSTEM360836
1107IT-WS-0482026-02-11T03:21:08.153Z2095040912smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM247009
1108IT-WS-0482026-02-12T13:18:22.286Z2248542658services.exeC:\Windows\System32\services.exeACME\svc_backup62522
1109IT-WS-0482026-02-11T17:49:07.671Z289263696spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_backup444353
1110IT-WS-0482026-02-12T10:57:01.242Z2305658775MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_backup262569
1111IT-WS-0482026-02-10T08:25:33.777Z3932731161OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_backup205116
1112IT-WS-0482026-02-12T18:55:02.621Z6002631465epicgameslauncher.exeC:\Users\svc_backup\AppData\Local\epicgameslauncher\epicgameslauncher.exeACME\svc_backup231186
1113HR-WS-0492026-02-18T08:09:39.915Z302966svchost.exeC:\Windows\System32\svchost.exeACME\hbrown104996
1114HR-WS-0492026-02-15T11:05:08.695Z307175763explorer.exeC:\Windows\System32\explorer.exeACME\hbrown19625
1115HR-WS-0492026-02-13T16:49:57.638Z449697627chrome.exeC:\Windows\System32\chrome.exeACME\hbrown126919
1116HR-WS-0492026-02-10T09:50:54.810Z149871726msedge.exeC:\Windows\System32\msedge.exeACME\hbrown485969
1117HR-WS-0492026-02-13T20:09:58.168Z5703112313outlook.exeC:\Windows\System32\outlook.exeACME\hbrown201720
1118HR-WS-0492026-02-18T17:57:59.328Z3780859916teams.exeC:\Windows\System32\teams.exeACME\hbrown143424
1119HR-WS-0492026-02-12T22:51:21.163Z2926650136code.exeC:\Windows\System32\code.exeACME\hbrown473481
1120HR-WS-0492026-02-19T22:59:23.691Z450012607powershell.exeC:\Windows\System32\powershell.exeACME\hbrown124698
1121HR-WS-0492026-02-14T01:11:44.025Z46846679cmd.exeC:\Windows\System32\cmd.exeACME\hbrown312895
1122HR-WS-0492026-02-12T16:42:02.205Z2726833074notepad.exeC:\Windows\System32\notepad.exeACME\hbrown153423
1123HR-WS-0492026-02-18T03:38:25.407Z6477935449taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown364016
1124HR-WS-0492026-02-11T19:15:14.080Z1983510447RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown344960
1125HR-WS-0492026-02-11T05:43:40.841Z2843413043SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown159690
1126HR-WS-0492026-02-10T12:24:15.983Z579897lsass.exeC:\Windows\System32\lsass.exeACME\hbrown462666
1127HR-WS-0492026-02-10T15:20:18.498Z5473620csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM109208
1128HR-WS-0492026-02-20T03:55:55.282Z4217642904winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown363527
1129HR-WS-0492026-02-12T21:41:27.731Z373507800dwm.exeC:\Windows\System32\dwm.exeACME\hbrown187556
1130HR-WS-0492026-02-17T00:08:53.836Z5390225067SystemSystemNT AUTHORITY\SYSTEM103776
1131HR-WS-0492026-02-17T17:22:19.112Z5638653827smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM227570
1132HR-WS-0492026-02-12T11:47:19.908Z326145864services.exeC:\Windows\System32\services.exeACME\hbrown161520
1133HR-WS-0492026-02-19T18:44:15.665Z2754057880spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown103653
1134HR-WS-0492026-02-18T02:43:19.967Z216415570MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown159087
1135HR-WS-0492026-02-12T05:56:15.972Z2138711160OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown396791
1136FIN-WS-0502026-02-17T11:44:05.994Z922211svchost.exeC:\Windows\System32\svchost.exeACME\cjohnson436561
1137FIN-WS-0502026-02-17T04:59:13.938Z2033733622explorer.exeC:\Windows\System32\explorer.exeACME\cjohnson381225
1138FIN-WS-0502026-02-17T19:10:24.822Z1235354093chrome.exeC:\Windows\System32\chrome.exeACME\cjohnson235304
1139FIN-WS-0502026-02-16T06:01:53.489Z5005440230msedge.exeC:\Windows\System32\msedge.exeACME\cjohnson374334
1140FIN-WS-0502026-02-19T04:12:45.590Z1685439165outlook.exeC:\Windows\System32\outlook.exeACME\cjohnson187296
1141FIN-WS-0502026-02-15T02:01:08.197Z6390028813teams.exeC:\Windows\System32\teams.exeACME\cjohnson289267
1142FIN-WS-0502026-02-12T15:18:05.652Z1582242128code.exeC:\Windows\System32\code.exeACME\cjohnson93447
1143FIN-WS-0502026-02-16T15:51:21.715Z791743945powershell.exeC:\Windows\System32\powershell.exeACME\cjohnson1088
1144FIN-WS-0502026-02-14T08:53:25.968Z6427844885cmd.exeC:\Windows\System32\cmd.exeACME\cjohnson4440
1145FIN-WS-0502026-02-13T08:06:21.667Z6266028491notepad.exeC:\Windows\System32\notepad.exeACME\cjohnson76346
1146FIN-WS-0502026-02-20T04:18:51.808Z1296345455taskhostw.exeC:\Windows\System32\taskhostw.exeACME\cjohnson387991
1147FIN-WS-0502026-02-13T16:51:58.204Z420865100RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\cjohnson22472
1148FIN-WS-0502026-02-13T01:19:20.723Z1029520296SearchHost.exeC:\Windows\System32\SearchHost.exeACME\cjohnson242311
1149FIN-WS-0502026-02-10T10:05:08.347Z330677lsass.exeC:\Windows\System32\lsass.exeACME\cjohnson497285
1150FIN-WS-0502026-02-10T11:38:01.087Z2975811csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM210676
1151FIN-WS-0502026-02-15T12:21:43.946Z129999389winlogon.exeC:\Windows\System32\winlogon.exeACME\cjohnson11999
1152FIN-WS-0502026-02-17T02:41:07.287Z6292412523dwm.exeC:\Windows\System32\dwm.exeACME\cjohnson300457
1153FIN-WS-0502026-02-11T09:33:03.829Z763816660SystemSystemNT AUTHORITY\SYSTEM9683
1154FIN-WS-0502026-02-11T15:20:32.428Z4438622791smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM498334
1155FIN-WS-0502026-02-14T11:12:59.435Z3976241291services.exeC:\Windows\System32\services.exeACME\cjohnson431534
1156FIN-WS-0502026-02-20T01:35:05.894Z6095527193spoolsv.exeC:\Windows\System32\spoolsv.exeACME\cjohnson88649
1157FIN-WS-0502026-02-17T22:35:20.313Z3053810113MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\cjohnson99326
1158FIN-WS-0502026-02-14T13:33:22.241Z5981757360OneDrive.exeC:\Windows\System32\OneDrive.exeACME\cjohnson497311
1159SLS-WS-0512026-02-12T10:40:29.261Z6177810svchost.exeC:\Windows\System32\svchost.exeACME\emartinez256062
1160SLS-WS-0512026-02-17T01:58:05.994Z2750533501explorer.exeC:\Windows\System32\explorer.exeACME\emartinez403574
1161SLS-WS-0512026-02-20T07:03:43.833Z3162640155chrome.exeC:\Windows\System32\chrome.exeACME\emartinez252034
1162SLS-WS-0512026-02-14T09:28:02.636Z4329520139msedge.exeC:\Windows\System32\msedge.exeACME\emartinez331103
1163SLS-WS-0512026-02-14T08:36:00.680Z5616612284outlook.exeC:\Windows\System32\outlook.exeACME\emartinez270414
1164SLS-WS-0512026-02-12T08:37:14.724Z2686046581teams.exeC:\Windows\System32\teams.exeACME\emartinez468855
1165SLS-WS-0512026-02-17T12:43:47.427Z517385932code.exeC:\Windows\System32\code.exeACME\emartinez109092
1166SLS-WS-0512026-02-15T10:02:47.700Z145578789powershell.exeC:\Windows\System32\powershell.exeACME\emartinez407284
1167SLS-WS-0512026-02-18T16:36:19.070Z3686148377cmd.exeC:\Windows\System32\cmd.exeACME\emartinez377869
1168SLS-WS-0512026-02-18T18:56:45.244Z361548936notepad.exeC:\Windows\System32\notepad.exeACME\emartinez436110
1169SLS-WS-0512026-02-12T02:45:14.102Z29735176taskhostw.exeC:\Windows\System32\taskhostw.exeACME\emartinez499096
1170SLS-WS-0512026-02-19T07:14:22.715Z2743043765RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\emartinez64266
1171SLS-WS-0512026-02-14T08:12:06.674Z3961937237SearchHost.exeC:\Windows\System32\SearchHost.exeACME\emartinez156533
1172SLS-WS-0512026-02-13T06:46:44.455Z5624620lsass.exeC:\Windows\System32\lsass.exeACME\emartinez50318
1173SLS-WS-0512026-02-13T23:57:31.029Z5627118csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM162607
1174SLS-WS-0512026-02-14T00:40:17.992Z4825230224winlogon.exeC:\Windows\System32\winlogon.exeACME\emartinez499559
1175SLS-WS-0512026-02-18T00:45:14.772Z817227350dwm.exeC:\Windows\System32\dwm.exeACME\emartinez418471
1176SLS-WS-0512026-02-13T06:47:25.687Z1378735798SystemSystemNT AUTHORITY\SYSTEM498336
1177SLS-WS-0512026-02-11T21:33:30.641Z2148345388smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM16358
1178SLS-WS-0512026-02-15T16:51:31.521Z5378227541services.exeC:\Windows\System32\services.exeACME\emartinez97453
1179SLS-WS-0512026-02-20T10:40:22.335Z5519410434spoolsv.exeC:\Windows\System32\spoolsv.exeACME\emartinez241367
1180SLS-WS-0512026-02-17T17:40:24.006Z3721320638MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\emartinez38579
1181SLS-WS-0512026-02-11T05:09:26.245Z2020951131OneDrive.exeC:\Windows\System32\OneDrive.exeACME\emartinez6672
1182ENG-WS-0522026-02-17T08:06:12.818Z251693svchost.exeC:\Windows\System32\svchost.exeACME\fthompson194281
1183ENG-WS-0522026-02-16T19:09:43.524Z4040511222explorer.exeC:\Windows\System32\explorer.exeACME\fthompson100633
1184ENG-WS-0522026-02-13T20:20:12.655Z1045648053chrome.exeC:\Windows\System32\chrome.exeACME\fthompson498731
1185ENG-WS-0522026-02-16T13:46:25.159Z2970834691msedge.exeC:\Windows\System32\msedge.exeACME\fthompson478703
1186ENG-WS-0522026-02-13T19:44:49.196Z3595833174outlook.exeC:\Windows\System32\outlook.exeACME\fthompson465026
1187ENG-WS-0522026-02-16T06:06:48.745Z293627858teams.exeC:\Windows\System32\teams.exeACME\fthompson101283
1188ENG-WS-0522026-02-17T15:51:48.977Z369453443code.exeC:\Windows\System32\code.exeACME\fthompson404866
1189ENG-WS-0522026-02-17T23:58:51.328Z1468618817powershell.exeC:\Windows\System32\powershell.exeACME\fthompson254065
1190ENG-WS-0522026-02-18T20:32:06.568Z4838154950cmd.exeC:\Windows\System32\cmd.exeACME\fthompson400216
1191ENG-WS-0522026-02-11T03:35:16.409Z482314765notepad.exeC:\Windows\System32\notepad.exeACME\fthompson26853
1192ENG-WS-0522026-02-12T13:08:34.479Z909930820taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson436926
1193ENG-WS-0522026-02-11T18:44:36.649Z5534542696RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson123894
1194ENG-WS-0522026-02-16T20:19:52.735Z5733034713SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson191150
1195ENG-WS-0522026-02-19T00:05:58.287Z4194019lsass.exeC:\Windows\System32\lsass.exeACME\fthompson369195
1196ENG-WS-0522026-02-17T13:33:27.485Z572574csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM74054
1197ENG-WS-0522026-02-11T22:30:51.443Z3893241133winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson19475
1198ENG-WS-0522026-02-11T20:47:30.875Z3055410090dwm.exeC:\Windows\System32\dwm.exeACME\fthompson24989
1199ENG-WS-0522026-02-12T20:37:50.762Z5183313512SystemSystemNT AUTHORITY\SYSTEM386886
1200ENG-WS-0522026-02-12T15:38:49.203Z363709936smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM303194
1201ENG-WS-0522026-02-17T08:56:11.410Z3555140554services.exeC:\Windows\System32\services.exeACME\fthompson36475
1202ENG-WS-0522026-02-11T13:59:30.700Z701845892spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson127427
1203ENG-WS-0522026-02-20T15:58:12.848Z4115650204MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson306455
1204ENG-WS-0522026-02-18T01:20:59.577Z3267950110OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson483027
1205LEG-WS-0532026-02-16T14:24:11.654Z5408215svchost.exeC:\Windows\System32\svchost.exeACME\hbrown231188
1206LEG-WS-0532026-02-14T09:30:19.573Z3622930756explorer.exeC:\Windows\System32\explorer.exeACME\hbrown230458
1207LEG-WS-0532026-02-18T21:24:22.663Z6184735060chrome.exeC:\Windows\System32\chrome.exeACME\hbrown129927
1208LEG-WS-0532026-02-16T22:42:14.522Z25757603msedge.exeC:\Windows\System32\msedge.exeACME\hbrown375510
1209LEG-WS-0532026-02-11T16:33:32.920Z1930512050outlook.exeC:\Windows\System32\outlook.exeACME\hbrown404923
1210LEG-WS-0532026-02-19T10:08:19.433Z2521253171teams.exeC:\Windows\System32\teams.exeACME\hbrown445538
1211LEG-WS-0532026-02-13T18:15:31.057Z5489526845code.exeC:\Windows\System32\code.exeACME\hbrown160716
1212LEG-WS-0532026-02-13T01:03:16.468Z1685945077powershell.exeC:\Windows\System32\powershell.exeACME\hbrown267873
1213LEG-WS-0532026-02-15T02:52:38.296Z2479422304cmd.exeC:\Windows\System32\cmd.exeACME\hbrown104808
1214LEG-WS-0532026-02-14T12:43:59.923Z164958976notepad.exeC:\Windows\System32\notepad.exeACME\hbrown430973
1215LEG-WS-0532026-02-15T19:57:32.690Z162125142taskhostw.exeC:\Windows\System32\taskhostw.exeACME\hbrown163251
1216LEG-WS-0532026-02-20T11:24:00.481Z4439844418RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\hbrown293099
1217LEG-WS-0532026-02-18T18:22:19.437Z4177819679SearchHost.exeC:\Windows\System32\SearchHost.exeACME\hbrown323149
1218LEG-WS-0532026-02-16T10:54:06.574Z411414lsass.exeC:\Windows\System32\lsass.exeACME\hbrown369614
1219LEG-WS-0532026-02-10T20:35:22.735Z288735csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM442979
1220LEG-WS-0532026-02-11T03:47:01.729Z3877733781winlogon.exeC:\Windows\System32\winlogon.exeACME\hbrown110330
1221LEG-WS-0532026-02-10T09:10:36.733Z76149855dwm.exeC:\Windows\System32\dwm.exeACME\hbrown143465
1222LEG-WS-0532026-02-12T14:36:45.891Z1567242493SystemSystemNT AUTHORITY\SYSTEM63749
1223LEG-WS-0532026-02-11T05:02:32.338Z1907758979smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM370886
1224LEG-WS-0532026-02-18T04:41:57.806Z361257714services.exeC:\Windows\System32\services.exeACME\hbrown40587
1225LEG-WS-0532026-02-14T21:30:12.617Z4602441582spoolsv.exeC:\Windows\System32\spoolsv.exeACME\hbrown216092
1226LEG-WS-0532026-02-12T08:45:17.307Z1643058612MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\hbrown329044
1227LEG-WS-0532026-02-20T17:40:13.078Z22225185OneDrive.exeC:\Windows\System32\OneDrive.exeACME\hbrown395834
1228MKT-WS-0542026-02-10T21:11:57.645Z6298011svchost.exeC:\Windows\System32\svchost.exeACME\idavis149023
1229MKT-WS-0542026-02-19T03:43:36.209Z1863815766explorer.exeC:\Windows\System32\explorer.exeACME\idavis90576
1230MKT-WS-0542026-02-18T22:26:43.538Z290026445chrome.exeC:\Windows\System32\chrome.exeACME\idavis310666
1231MKT-WS-0542026-02-16T03:36:44.340Z1098437480msedge.exeC:\Windows\System32\msedge.exeACME\idavis341858
1232MKT-WS-0542026-02-11T19:31:15.130Z63325491outlook.exeC:\Windows\System32\outlook.exeACME\idavis273697
1233MKT-WS-0542026-02-13T01:55:31.735Z1851342689teams.exeC:\Windows\System32\teams.exeACME\idavis486520
1234MKT-WS-0542026-02-18T12:01:14.992Z740552278code.exeC:\Windows\System32\code.exeACME\idavis46358
1235MKT-WS-0542026-02-16T11:58:32.434Z4428224857powershell.exeC:\Windows\System32\powershell.exeACME\idavis359563
1236MKT-WS-0542026-02-18T18:13:39.448Z6311726869cmd.exeC:\Windows\System32\cmd.exeACME\idavis144158
1237MKT-WS-0542026-02-15T17:54:22.854Z545513915notepad.exeC:\Windows\System32\notepad.exeACME\idavis276921
1238MKT-WS-0542026-02-20T13:26:13.279Z5034621756taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis61138
1239MKT-WS-0542026-02-17T03:41:44.794Z6199558498RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis225337
1240MKT-WS-0542026-02-12T20:07:53.857Z153468797SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis55427
1241MKT-WS-0542026-02-10T11:29:12.744Z1293216lsass.exeC:\Windows\System32\lsass.exeACME\idavis472994
1242MKT-WS-0542026-02-15T08:41:40.504Z4834411csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM349534
1243MKT-WS-0542026-02-10T17:24:53.078Z193845110winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis250496
1244MKT-WS-0542026-02-12T03:48:11.255Z2703010502dwm.exeC:\Windows\System32\dwm.exeACME\idavis448255
1245MKT-WS-0542026-02-16T14:14:41.719Z4789922028SystemSystemNT AUTHORITY\SYSTEM65078
1246MKT-WS-0542026-02-11T16:09:25.310Z4720221484smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM489196
1247MKT-WS-0542026-02-15T21:30:55.846Z5757552271services.exeC:\Windows\System32\services.exeACME\idavis277002
1248MKT-WS-0542026-02-18T16:37:07.118Z230325583spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis123848
1249MKT-WS-0542026-02-15T17:15:20.416Z2073232413MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis419904
1250MKT-WS-0542026-02-13T06:43:04.381Z787327059OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis408052
1251EXEC-WS-0552026-02-13T04:40:29.194Z2700517svchost.exeC:\Windows\System32\svchost.exeACME\fthompson252085
1252EXEC-WS-0552026-02-12T07:30:58.920Z707254042explorer.exeC:\Windows\System32\explorer.exeACME\fthompson359966
1253EXEC-WS-0552026-02-10T22:40:30.503Z5978040717chrome.exeC:\Windows\System32\chrome.exeACME\fthompson473781
1254EXEC-WS-0552026-02-10T22:42:42.395Z668450959msedge.exeC:\Windows\System32\msedge.exeACME\fthompson94219
1255EXEC-WS-0552026-02-17T02:13:14.814Z5462939679outlook.exeC:\Windows\System32\outlook.exeACME\fthompson493803
1256EXEC-WS-0552026-02-18T09:05:29.863Z2227934271teams.exeC:\Windows\System32\teams.exeACME\fthompson485318
1257EXEC-WS-0552026-02-19T07:30:51.476Z5626744278code.exeC:\Windows\System32\code.exeACME\fthompson360236
1258EXEC-WS-0552026-02-11T08:36:39.503Z801555088powershell.exeC:\Windows\System32\powershell.exeACME\fthompson193772
1259EXEC-WS-0552026-02-19T20:55:30.064Z345495422cmd.exeC:\Windows\System32\cmd.exeACME\fthompson434421
1260EXEC-WS-0552026-02-11T07:26:15.317Z620053585notepad.exeC:\Windows\System32\notepad.exeACME\fthompson202340
1261EXEC-WS-0552026-02-12T07:49:48.449Z30918727taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson391903
1262EXEC-WS-0552026-02-19T14:29:57.052Z2439416482RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson333342
1263EXEC-WS-0552026-02-20T10:55:00.422Z5157338900SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson268081
1264EXEC-WS-0552026-02-16T12:02:45.184Z1078217lsass.exeC:\Windows\System32\lsass.exeACME\fthompson52076
1265EXEC-WS-0552026-02-20T08:27:40.067Z515189csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM283012
1266EXEC-WS-0552026-02-11T19:08:43.391Z755055747winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson128075
1267EXEC-WS-0552026-02-12T16:57:05.279Z2215928201dwm.exeC:\Windows\System32\dwm.exeACME\fthompson43795
1268EXEC-WS-0552026-02-18T20:14:14.822Z2625632552SystemSystemNT AUTHORITY\SYSTEM208228
1269EXEC-WS-0552026-02-15T01:14:50.480Z33159462smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM209188
1270EXEC-WS-0552026-02-12T05:01:05.589Z3686438308services.exeC:\Windows\System32\services.exeACME\fthompson278202
1271EXEC-WS-0552026-02-16T02:41:15.623Z5882741577spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson145020
1272EXEC-WS-0552026-02-15T16:08:45.760Z5717030805MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson360901
1273EXEC-WS-0552026-02-20T07:34:55.141Z5189630238OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson286908
1274EXEC-WS-0552026-02-12T09:41:22.056Z4485115143spotify.exeC:\Users\fthompson\AppData\Local\spotify\spotify.exeACME\fthompson211046
1275IT-WS-0562026-02-18T02:47:34.476Z4397515svchost.exeC:\Windows\System32\svchost.exeACME\gwhite183520
1276IT-WS-0562026-02-10T11:09:21.265Z639865914explorer.exeC:\Windows\System32\explorer.exeACME\gwhite429920
1277IT-WS-0562026-02-17T19:08:41.703Z5009448730chrome.exeC:\Windows\System32\chrome.exeACME\gwhite249704
1278IT-WS-0562026-02-20T15:27:52.594Z15343209msedge.exeC:\Windows\System32\msedge.exeACME\gwhite291873
1279IT-WS-0562026-02-20T17:27:54.908Z210712208outlook.exeC:\Windows\System32\outlook.exeACME\gwhite87326
1280IT-WS-0562026-02-12T13:53:33.948Z618086284teams.exeC:\Windows\System32\teams.exeACME\gwhite370282
1281IT-WS-0562026-02-13T10:30:58.960Z525245794code.exeC:\Windows\System32\code.exeACME\gwhite269026
1282IT-WS-0562026-02-16T21:16:02.461Z1141820484powershell.exeC:\Windows\System32\powershell.exeACME\gwhite449686
1283IT-WS-0562026-02-18T00:51:37.304Z615254560cmd.exeC:\Windows\System32\cmd.exeACME\gwhite387930
1284IT-WS-0562026-02-13T04:30:26.797Z154391470notepad.exeC:\Windows\System32\notepad.exeACME\gwhite155984
1285IT-WS-0562026-02-16T05:46:16.836Z2035925121taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite280220
1286IT-WS-0562026-02-13T10:10:04.802Z4117638681RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite418570
1287IT-WS-0562026-02-14T15:10:28.798Z2157236971SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite158479
1288IT-WS-0562026-02-18T06:10:57.441Z380871lsass.exeC:\Windows\System32\lsass.exeACME\gwhite488500
1289IT-WS-0562026-02-15T00:53:53.096Z609219csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM276775
1290IT-WS-0562026-02-16T16:15:56.204Z4729247966winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite130388
1291IT-WS-0562026-02-10T09:48:28.890Z1823723673dwm.exeC:\Windows\System32\dwm.exeACME\gwhite136458
1292IT-WS-0562026-02-14T03:00:27.459Z691540631SystemSystemNT AUTHORITY\SYSTEM350524
1293IT-WS-0562026-02-16T21:24:21.816Z577813083smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM113471
1294IT-WS-0562026-02-18T10:00:52.292Z182529151services.exeC:\Windows\System32\services.exeACME\gwhite451347
1295IT-WS-0562026-02-15T07:10:37.510Z256714722spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite203972
1296IT-WS-0562026-02-14T08:56:13.877Z461617064MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite380259
1297IT-WS-0562026-02-17T23:25:46.047Z2644136561OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite449187
1298HR-WS-0572026-02-17T08:36:01.114Z4532718svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql72057
1299HR-WS-0572026-02-20T11:28:09.546Z5226042106explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql489204
1300HR-WS-0572026-02-15T10:11:13.635Z3937634323chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql279384
1301HR-WS-0572026-02-15T18:48:55.344Z2038450456msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql437927
1302HR-WS-0572026-02-15T15:58:19.815Z581224743outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql281283
1303HR-WS-0572026-02-14T10:17:56.291Z2560837723teams.exeC:\Windows\System32\teams.exeACME\svc_sql74260
1304HR-WS-0572026-02-13T06:11:46.852Z1493251266code.exeC:\Windows\System32\code.exeACME\svc_sql471196
1305HR-WS-0572026-02-13T17:38:31.376Z168833753powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql231675
1306HR-WS-0572026-02-19T22:58:36.547Z941855847cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql262362
1307HR-WS-0572026-02-12T02:46:56.673Z4964730325notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql415673
1308HR-WS-0572026-02-16T06:40:35.847Z1467751252taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql448481
1309HR-WS-0572026-02-20T09:15:55.675Z1294742706RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql81091
1310HR-WS-0572026-02-20T10:59:46.219Z177746444SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql40020
1311HR-WS-0572026-02-20T05:35:02.506Z268491lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql143895
1312HR-WS-0572026-02-20T06:01:59.492Z3838710csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM251145
1313HR-WS-0572026-02-11T23:23:33.385Z4830846029winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql102588
1314HR-WS-0572026-02-16T20:01:05.129Z457458707dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql33810
1315HR-WS-0572026-02-17T14:41:20.058Z288623763SystemSystemNT AUTHORITY\SYSTEM205689
1316HR-WS-0572026-02-15T19:45:26.039Z2785354090smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM198103
1317HR-WS-0572026-02-14T21:28:07.208Z1601153692services.exeC:\Windows\System32\services.exeACME\svc_sql53384
1318HR-WS-0572026-02-18T14:26:31.903Z4581535852spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql413472
1319HR-WS-0572026-02-12T13:51:55.509Z3645737846MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql182335
1320HR-WS-0572026-02-17T21:39:41.417Z3375916496OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql484765
1321FIN-WS-0582026-02-15T08:21:20.852Z5296610svchost.exeC:\Windows\System32\svchost.exeACME\jsmith409450
1322FIN-WS-0582026-02-17T13:27:33.103Z5675124098explorer.exeC:\Windows\System32\explorer.exeACME\jsmith47346
1323FIN-WS-0582026-02-18T17:00:26.070Z5429558832chrome.exeC:\Windows\System32\chrome.exeACME\jsmith437075
1324FIN-WS-0582026-02-14T09:04:07.403Z2739720916msedge.exeC:\Windows\System32\msedge.exeACME\jsmith182669
1325FIN-WS-0582026-02-19T18:42:39.045Z2527256260outlook.exeC:\Windows\System32\outlook.exeACME\jsmith146913
1326FIN-WS-0582026-02-14T19:05:48.437Z670844703teams.exeC:\Windows\System32\teams.exeACME\jsmith208139
1327FIN-WS-0582026-02-15T02:23:15.426Z2564327598code.exeC:\Windows\System32\code.exeACME\jsmith176750
1328FIN-WS-0582026-02-18T14:10:34.432Z3014050763powershell.exeC:\Windows\System32\powershell.exeACME\jsmith59810
1329FIN-WS-0582026-02-18T21:32:41.842Z637445548cmd.exeC:\Windows\System32\cmd.exeACME\jsmith74606
1330FIN-WS-0582026-02-10T12:29:14.093Z265432484notepad.exeC:\Windows\System32\notepad.exeACME\jsmith274864
1331FIN-WS-0582026-02-10T12:25:23.501Z4523843166taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith178022
1332FIN-WS-0582026-02-18T08:00:25.584Z4112534602RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith101563
1333FIN-WS-0582026-02-16T06:25:10.532Z5024824166SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith258204
1334FIN-WS-0582026-02-18T18:04:44.722Z4146219lsass.exeC:\Windows\System32\lsass.exeACME\jsmith422553
1335FIN-WS-0582026-02-12T05:36:18.740Z6224114csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM379265
1336FIN-WS-0582026-02-11T18:18:43.096Z5720722321winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith242420
1337FIN-WS-0582026-02-13T23:21:35.364Z276925223dwm.exeC:\Windows\System32\dwm.exeACME\jsmith374013
1338FIN-WS-0582026-02-20T14:55:43.028Z4678555589SystemSystemNT AUTHORITY\SYSTEM125618
1339FIN-WS-0582026-02-19T09:56:18.047Z1239022855smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM319476
1340FIN-WS-0582026-02-15T16:18:58.194Z5240441262services.exeC:\Windows\System32\services.exeACME\jsmith136370
1341FIN-WS-0582026-02-19T02:07:09.797Z351953191spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith220066
1342FIN-WS-0582026-02-14T19:46:43.090Z439733128MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith399482
1343FIN-WS-0582026-02-16T22:55:33.787Z4395545398OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith389221
1344SLS-WS-0592026-02-12T11:02:19.003Z7589svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql77078
1345SLS-WS-0592026-02-16T14:43:44.743Z1065438941explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql349906
1346SLS-WS-0592026-02-15T23:02:47.532Z5521032604chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql114739
1347SLS-WS-0592026-02-19T08:58:10.406Z867054244msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql363275
1348SLS-WS-0592026-02-11T00:08:12.977Z45315319outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql127084
1349SLS-WS-0592026-02-16T09:44:05.243Z1445259149teams.exeC:\Windows\System32\teams.exeACME\svc_sql297371
1350SLS-WS-0592026-02-10T10:24:01.155Z5425814335code.exeC:\Windows\System32\code.exeACME\svc_sql8201
1351SLS-WS-0592026-02-10T19:51:35.491Z18487582powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql257918
1352SLS-WS-0592026-02-19T10:44:48.549Z6119953396cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql181743
1353SLS-WS-0592026-02-19T00:25:35.028Z3641620368notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql483301
1354SLS-WS-0592026-02-16T05:48:42.662Z5865243112taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql437656
1355SLS-WS-0592026-02-19T14:55:37.605Z11417049RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql23243
1356SLS-WS-0592026-02-14T20:09:46.396Z5748522326SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql386785
1357SLS-WS-0592026-02-19T00:31:22.479Z1265lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql237008
1358SLS-WS-0592026-02-10T17:19:08.229Z3603116csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM388647
1359SLS-WS-0592026-02-16T13:26:46.208Z5363352585winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql321202
1360SLS-WS-0592026-02-10T22:04:35.726Z2139340115dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql358691
1361SLS-WS-0592026-02-17T23:51:46.680Z6020130308SystemSystemNT AUTHORITY\SYSTEM296527
1362SLS-WS-0592026-02-14T09:43:39.396Z55417875smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM208081
1363SLS-WS-0592026-02-11T01:00:00.135Z3972556378services.exeC:\Windows\System32\services.exeACME\svc_sql312912
1364SLS-WS-0592026-02-19T19:35:54.632Z5008437806spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql271733
1365SLS-WS-0592026-02-18T08:05:26.159Z5023712742MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql221212
1366SLS-WS-0592026-02-15T20:39:27.796Z5783017579OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql284550
1367ENG-WS-0602026-02-19T19:20:49.030Z2687519svchost.exeC:\Windows\System32\svchost.exeACME\bwilson218425
1368ENG-WS-0602026-02-17T15:07:05.516Z531127167explorer.exeC:\Windows\System32\explorer.exeACME\bwilson204894
1369ENG-WS-0602026-02-17T07:56:31.972Z6259329268chrome.exeC:\Windows\System32\chrome.exeACME\bwilson250068
1370ENG-WS-0602026-02-15T01:51:14.715Z581294456msedge.exeC:\Windows\System32\msedge.exeACME\bwilson372937
1371ENG-WS-0602026-02-12T06:18:14.593Z3009520958outlook.exeC:\Windows\System32\outlook.exeACME\bwilson216531
1372ENG-WS-0602026-02-16T06:38:09.139Z4701444735teams.exeC:\Windows\System32\teams.exeACME\bwilson157865
1373ENG-WS-0602026-02-18T13:08:49.880Z6126944225code.exeC:\Windows\System32\code.exeACME\bwilson362225
1374ENG-WS-0602026-02-11T08:49:02.259Z2531340914powershell.exeC:\Windows\System32\powershell.exeACME\bwilson449084
1375ENG-WS-0602026-02-15T23:03:49.647Z1792946454cmd.exeC:\Windows\System32\cmd.exeACME\bwilson322996
1376ENG-WS-0602026-02-16T00:02:53.630Z3038635480notepad.exeC:\Windows\System32\notepad.exeACME\bwilson47124
1377ENG-WS-0602026-02-13T02:11:43.770Z4411441815taskhostw.exeC:\Windows\System32\taskhostw.exeACME\bwilson362865
1378ENG-WS-0602026-02-13T17:58:18.686Z916016996RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\bwilson86931
1379ENG-WS-0602026-02-18T04:03:39.152Z5219629240SearchHost.exeC:\Windows\System32\SearchHost.exeACME\bwilson248652
1380ENG-WS-0602026-02-10T17:32:35.193Z242312lsass.exeC:\Windows\System32\lsass.exeACME\bwilson280585
1381ENG-WS-0602026-02-13T20:27:40.450Z5283216csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM178216
1382ENG-WS-0602026-02-14T19:29:21.021Z278321209winlogon.exeC:\Windows\System32\winlogon.exeACME\bwilson140229
1383ENG-WS-0602026-02-18T21:45:57.737Z1945255320dwm.exeC:\Windows\System32\dwm.exeACME\bwilson43149
1384ENG-WS-0602026-02-20T06:07:02.238Z3571748780SystemSystemNT AUTHORITY\SYSTEM456583
1385ENG-WS-0602026-02-17T20:18:55.304Z4898157430smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM282387
1386ENG-WS-0602026-02-18T21:17:21.025Z3502143305services.exeC:\Windows\System32\services.exeACME\bwilson203112
1387ENG-WS-0602026-02-20T08:13:59.951Z2906033955spoolsv.exeC:\Windows\System32\spoolsv.exeACME\bwilson376218
1388ENG-WS-0602026-02-10T14:14:43.577Z2421756719MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\bwilson119372
1389ENG-WS-0602026-02-11T12:13:27.964Z5824037716OneDrive.exeC:\Windows\System32\OneDrive.exeACME\bwilson303537
1390LEG-WS-0612026-02-19T22:14:22.990Z417815svchost.exeC:\Windows\System32\svchost.exeACME\gwhite440332
1391LEG-WS-0612026-02-13T10:42:05.315Z469775388explorer.exeC:\Windows\System32\explorer.exeACME\gwhite89230
1392LEG-WS-0612026-02-12T20:11:23.967Z15386734chrome.exeC:\Windows\System32\chrome.exeACME\gwhite439489
1393LEG-WS-0612026-02-17T04:04:29.697Z4095653548msedge.exeC:\Windows\System32\msedge.exeACME\gwhite283070
1394LEG-WS-0612026-02-12T12:56:54.902Z5636020393outlook.exeC:\Windows\System32\outlook.exeACME\gwhite466254
1395LEG-WS-0612026-02-16T00:27:25.780Z4906411532teams.exeC:\Windows\System32\teams.exeACME\gwhite401719
1396LEG-WS-0612026-02-20T01:54:07.990Z609705025code.exeC:\Windows\System32\code.exeACME\gwhite163900
1397LEG-WS-0612026-02-14T09:36:10.334Z119119299powershell.exeC:\Windows\System32\powershell.exeACME\gwhite164580
1398LEG-WS-0612026-02-14T21:21:58.508Z3121335027cmd.exeC:\Windows\System32\cmd.exeACME\gwhite382526
1399LEG-WS-0612026-02-14T01:25:42.723Z1294652228notepad.exeC:\Windows\System32\notepad.exeACME\gwhite231734
1400LEG-WS-0612026-02-12T06:14:27.106Z6085149421taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite216270
1401LEG-WS-0612026-02-15T08:22:49.619Z4356310753RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite120160
1402LEG-WS-0612026-02-15T13:23:15.671Z153433207SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite300113
1403LEG-WS-0612026-02-13T12:27:07.973Z8548lsass.exeC:\Windows\System32\lsass.exeACME\gwhite408169
1404LEG-WS-0612026-02-14T11:11:31.174Z1954510csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM263173
1405LEG-WS-0612026-02-19T17:43:21.260Z1866752757winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite400139
1406LEG-WS-0612026-02-10T23:42:36.542Z1180754829dwm.exeC:\Windows\System32\dwm.exeACME\gwhite392855
1407LEG-WS-0612026-02-19T08:19:09.815Z618112852SystemSystemNT AUTHORITY\SYSTEM312381
1408LEG-WS-0612026-02-20T07:34:42.665Z2119419493smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM203940
1409LEG-WS-0612026-02-11T09:25:51.823Z3693927532services.exeC:\Windows\System32\services.exeACME\gwhite242456
1410LEG-WS-0612026-02-17T06:19:27.550Z5267147151spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite31033
1411LEG-WS-0612026-02-15T06:03:48.168Z5133759253MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite489638
1412LEG-WS-0612026-02-16T19:05:52.373Z29537645OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite365447
1413MKT-WS-0622026-02-19T03:17:47.193Z4013117svchost.exeC:\Windows\System32\svchost.exeACME\idavis432973
1414MKT-WS-0622026-02-13T05:43:57.519Z6084958488explorer.exeC:\Windows\System32\explorer.exeACME\idavis234812
1415MKT-WS-0622026-02-15T04:20:34.394Z275834566chrome.exeC:\Windows\System32\chrome.exeACME\idavis313863
1416MKT-WS-0622026-02-11T13:31:32.047Z3773524494msedge.exeC:\Windows\System32\msedge.exeACME\idavis395474
1417MKT-WS-0622026-02-17T18:41:16.232Z269714215outlook.exeC:\Windows\System32\outlook.exeACME\idavis185099
1418MKT-WS-0622026-02-20T10:23:05.712Z2657447881teams.exeC:\Windows\System32\teams.exeACME\idavis168016
1419MKT-WS-0622026-02-14T11:27:31.951Z3171745524code.exeC:\Windows\System32\code.exeACME\idavis37179
1420MKT-WS-0622026-02-16T20:27:34.194Z381947693powershell.exeC:\Windows\System32\powershell.exeACME\idavis18677
1421MKT-WS-0622026-02-10T14:27:37.175Z943834616cmd.exeC:\Windows\System32\cmd.exeACME\idavis238857
1422MKT-WS-0622026-02-16T11:35:00.517Z4978356513notepad.exeC:\Windows\System32\notepad.exeACME\idavis369586
1423MKT-WS-0622026-02-10T13:49:34.579Z2260724585taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis422628
1424MKT-WS-0622026-02-13T00:12:11.236Z369150245RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis144774
1425MKT-WS-0622026-02-14T18:36:33.156Z492922669SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis442909
1426MKT-WS-0622026-02-17T09:58:47.460Z5471413lsass.exeC:\Windows\System32\lsass.exeACME\idavis22657
1427MKT-WS-0622026-02-17T21:46:02.530Z6203812csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM470774
1428MKT-WS-0622026-02-14T05:14:24.171Z1034832663winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis82161
1429MKT-WS-0622026-02-19T18:16:51.204Z5265658052dwm.exeC:\Windows\System32\dwm.exeACME\idavis99267
1430MKT-WS-0622026-02-11T12:24:12.033Z152410832SystemSystemNT AUTHORITY\SYSTEM168437
1431MKT-WS-0622026-02-12T04:43:05.996Z3553337340smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM483920
1432MKT-WS-0622026-02-16T05:06:46.040Z3688914001services.exeC:\Windows\System32\services.exeACME\idavis12498
1433MKT-WS-0622026-02-15T02:52:15.348Z2109912806spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis62642
1434MKT-WS-0622026-02-17T00:31:02.395Z4887714965MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis372672
1435MKT-WS-0622026-02-18T01:14:09.531Z2581746133OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis495249
1436EXEC-WS-0632026-02-11T22:09:51.495Z4157svchost.exeC:\Windows\System32\svchost.exeACME\bwilson384715
1437EXEC-WS-0632026-02-20T13:05:39.320Z1839934140explorer.exeC:\Windows\System32\explorer.exeACME\bwilson102367
1438EXEC-WS-0632026-02-11T19:11:42.278Z5455250960chrome.exeC:\Windows\System32\chrome.exeACME\bwilson340789
1439EXEC-WS-0632026-02-19T22:51:59.299Z3060758503msedge.exeC:\Windows\System32\msedge.exeACME\bwilson481572
1440EXEC-WS-0632026-02-15T10:52:59.840Z2406327654outlook.exeC:\Windows\System32\outlook.exeACME\bwilson321539
1441EXEC-WS-0632026-02-20T01:52:47.761Z6065517858teams.exeC:\Windows\System32\teams.exeACME\bwilson204430
1442EXEC-WS-0632026-02-13T17:17:47.769Z5681235836code.exeC:\Windows\System32\code.exeACME\bwilson436580
1443EXEC-WS-0632026-02-11T13:11:21.331Z1230518272powershell.exeC:\Windows\System32\powershell.exeACME\bwilson400739
1444EXEC-WS-0632026-02-13T06:43:46.608Z1933733218cmd.exeC:\Windows\System32\cmd.exeACME\bwilson220475
1445EXEC-WS-0632026-02-16T15:04:50.978Z4266836901notepad.exeC:\Windows\System32\notepad.exeACME\bwilson289547
1446EXEC-WS-0632026-02-19T13:52:38.039Z478202410taskhostw.exeC:\Windows\System32\taskhostw.exeACME\bwilson232396
1447EXEC-WS-0632026-02-19T09:03:21.344Z2362731311RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\bwilson491399
1448EXEC-WS-0632026-02-18T14:17:33.060Z1882828753SearchHost.exeC:\Windows\System32\SearchHost.exeACME\bwilson278716
1449EXEC-WS-0632026-02-16T01:17:10.065Z2230115lsass.exeC:\Windows\System32\lsass.exeACME\bwilson207843
1450EXEC-WS-0632026-02-14T03:40:18.072Z5394310csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM407729
1451EXEC-WS-0632026-02-12T04:52:17.226Z4568238226winlogon.exeC:\Windows\System32\winlogon.exeACME\bwilson73137
1452EXEC-WS-0632026-02-12T20:31:08.571Z2948937312dwm.exeC:\Windows\System32\dwm.exeACME\bwilson203356
1453EXEC-WS-0632026-02-11T15:51:35.769Z3536844757SystemSystemNT AUTHORITY\SYSTEM343128
1454EXEC-WS-0632026-02-16T03:52:23.617Z4053043906smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM191449
1455EXEC-WS-0632026-02-13T22:28:04.753Z607626216services.exeC:\Windows\System32\services.exeACME\bwilson97277
1456EXEC-WS-0632026-02-15T10:38:00.868Z4381434268spoolsv.exeC:\Windows\System32\spoolsv.exeACME\bwilson464950
1457EXEC-WS-0632026-02-11T10:57:59.250Z1371821480MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\bwilson289784
1458EXEC-WS-0632026-02-15T20:34:25.455Z3070031592OneDrive.exeC:\Windows\System32\OneDrive.exeACME\bwilson127131
1459IT-WS-0642026-02-13T07:09:43.674Z45539svchost.exeC:\Windows\System32\svchost.exeACME\admin474079
1460IT-WS-0642026-02-15T09:18:18.961Z3145543690explorer.exeC:\Windows\System32\explorer.exeACME\admin158612
1461IT-WS-0642026-02-18T10:23:20.161Z2925926811chrome.exeC:\Windows\System32\chrome.exeACME\admin307308
1462IT-WS-0642026-02-17T20:15:54.067Z2931443284msedge.exeC:\Windows\System32\msedge.exeACME\admin10576
1463IT-WS-0642026-02-15T18:58:06.603Z127654511outlook.exeC:\Windows\System32\outlook.exeACME\admin231103
1464IT-WS-0642026-02-20T17:28:18.065Z5597350959teams.exeC:\Windows\System32\teams.exeACME\admin431176
1465IT-WS-0642026-02-15T09:36:46.013Z1183432691code.exeC:\Windows\System32\code.exeACME\admin299094
1466IT-WS-0642026-02-20T10:09:29.549Z6229027505powershell.exeC:\Windows\System32\powershell.exeACME\admin459715
1467IT-WS-0642026-02-15T22:50:26.955Z2695743836cmd.exeC:\Windows\System32\cmd.exeACME\admin417609
1468IT-WS-0642026-02-14T07:30:17.094Z3430544001notepad.exeC:\Windows\System32\notepad.exeACME\admin351047
1469IT-WS-0642026-02-13T06:40:52.671Z4692951397taskhostw.exeC:\Windows\System32\taskhostw.exeACME\admin483025
1470IT-WS-0642026-02-13T18:37:40.062Z11550700RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\admin369548
1471IT-WS-0642026-02-18T21:07:45.201Z209243660SearchHost.exeC:\Windows\System32\SearchHost.exeACME\admin171106
1472IT-WS-0642026-02-20T09:58:34.428Z3094518lsass.exeC:\Windows\System32\lsass.exeACME\admin212542
1473IT-WS-0642026-02-18T21:43:53.118Z115975csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM213491
1474IT-WS-0642026-02-18T08:54:26.228Z1381217261winlogon.exeC:\Windows\System32\winlogon.exeACME\admin174279
1475IT-WS-0642026-02-17T20:18:27.438Z617134917dwm.exeC:\Windows\System32\dwm.exeACME\admin450630
1476IT-WS-0642026-02-11T12:19:17.157Z2093950687SystemSystemNT AUTHORITY\SYSTEM123034
1477IT-WS-0642026-02-10T23:55:12.317Z57298792smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM468777
1478IT-WS-0642026-02-19T06:39:47.488Z480144445services.exeC:\Windows\System32\services.exeACME\admin374470
1479IT-WS-0642026-02-16T21:09:23.568Z342618315spoolsv.exeC:\Windows\System32\spoolsv.exeACME\admin264112
1480IT-WS-0642026-02-15T09:04:15.167Z4215055265MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\admin25611
1481IT-WS-0642026-02-18T23:42:42.977Z3494149168OneDrive.exeC:\Windows\System32\OneDrive.exeACME\admin226556
1482HR-WS-0652026-02-19T22:10:53.345Z207394svchost.exeC:\Windows\System32\svchost.exeACME\fthompson133912
1483HR-WS-0652026-02-14T14:27:52.919Z2871955026explorer.exeC:\Windows\System32\explorer.exeACME\fthompson28845
1484HR-WS-0652026-02-11T09:37:16.101Z5143651786chrome.exeC:\Windows\System32\chrome.exeACME\fthompson8404
1485HR-WS-0652026-02-18T00:29:29.644Z5251950317msedge.exeC:\Windows\System32\msedge.exeACME\fthompson298123
1486HR-WS-0652026-02-14T15:41:44.408Z1562740344outlook.exeC:\Windows\System32\outlook.exeACME\fthompson20419
1487HR-WS-0652026-02-18T19:42:29.342Z711358911teams.exeC:\Windows\System32\teams.exeACME\fthompson176541
1488HR-WS-0652026-02-19T08:45:56.265Z2432145451code.exeC:\Windows\System32\code.exeACME\fthompson97480
1489HR-WS-0652026-02-11T03:27:42.140Z2550520300powershell.exeC:\Windows\System32\powershell.exeACME\fthompson71133
1490HR-WS-0652026-02-20T07:12:04.484Z1733325386cmd.exeC:\Windows\System32\cmd.exeACME\fthompson197137
1491HR-WS-0652026-02-17T12:04:11.482Z2204410204notepad.exeC:\Windows\System32\notepad.exeACME\fthompson491324
1492HR-WS-0652026-02-14T02:19:25.196Z4830539493taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson255994
1493HR-WS-0652026-02-20T09:29:57.683Z3688129744RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson490234
1494HR-WS-0652026-02-11T12:41:10.139Z1292220885SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson285711
1495HR-WS-0652026-02-10T09:25:16.279Z157295lsass.exeC:\Windows\System32\lsass.exeACME\fthompson428962
1496HR-WS-0652026-02-18T15:31:39.784Z118906csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM243834
1497HR-WS-0652026-02-11T04:38:07.729Z470638248winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson343127
1498HR-WS-0652026-02-10T20:32:52.671Z539032899dwm.exeC:\Windows\System32\dwm.exeACME\fthompson76063
1499HR-WS-0652026-02-13T05:30:19.688Z549149036SystemSystemNT AUTHORITY\SYSTEM273045
1500HR-WS-0652026-02-17T19:57:14.625Z34742188smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM280770
1501HR-WS-0652026-02-20T11:26:23.315Z1674729122services.exeC:\Windows\System32\services.exeACME\fthompson166198
1502HR-WS-0652026-02-13T19:12:59.702Z5354756045spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson235196
1503HR-WS-0652026-02-12T21:38:59.373Z4495531943MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson361025
1504HR-WS-0652026-02-11T21:25:11.262Z4238314294OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson95643
1505FIN-WS-0662026-02-11T15:50:54.725Z45757svchost.exeC:\Windows\System32\svchost.exeACME\idavis348332
1506FIN-WS-0662026-02-16T01:26:56.921Z463764444explorer.exeC:\Windows\System32\explorer.exeACME\idavis432675
1507FIN-WS-0662026-02-14T15:58:23.470Z4168715897chrome.exeC:\Windows\System32\chrome.exeACME\idavis305188
1508FIN-WS-0662026-02-20T16:06:25.997Z5330047705msedge.exeC:\Windows\System32\msedge.exeACME\idavis328011
1509FIN-WS-0662026-02-14T01:34:54.814Z3401616416outlook.exeC:\Windows\System32\outlook.exeACME\idavis269965
1510FIN-WS-0662026-02-15T19:05:34.865Z42117750teams.exeC:\Windows\System32\teams.exeACME\idavis205518
1511FIN-WS-0662026-02-18T19:14:45.642Z3944933913code.exeC:\Windows\System32\code.exeACME\idavis261726
1512FIN-WS-0662026-02-16T08:24:26.012Z136219157powershell.exeC:\Windows\System32\powershell.exeACME\idavis410812
1513FIN-WS-0662026-02-13T14:54:35.831Z2979858594cmd.exeC:\Windows\System32\cmd.exeACME\idavis144090
1514FIN-WS-0662026-02-14T18:44:52.471Z4970722048notepad.exeC:\Windows\System32\notepad.exeACME\idavis249634
1515FIN-WS-0662026-02-17T01:57:09.012Z711459128taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis245467
1516FIN-WS-0662026-02-11T19:54:32.049Z359541068RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis480624
1517FIN-WS-0662026-02-19T04:19:48.019Z1968525814SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis276391
1518FIN-WS-0662026-02-16T04:59:27.913Z1822812lsass.exeC:\Windows\System32\lsass.exeACME\idavis323189
1519FIN-WS-0662026-02-16T14:28:27.884Z476961csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM200044
1520FIN-WS-0662026-02-10T15:01:26.931Z2626453401winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis156693
1521FIN-WS-0662026-02-12T09:36:32.949Z3072934470dwm.exeC:\Windows\System32\dwm.exeACME\idavis29679
1522FIN-WS-0662026-02-11T20:45:39.950Z5360227407SystemSystemNT AUTHORITY\SYSTEM443821
1523FIN-WS-0662026-02-14T13:22:14.483Z2799719171smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM174877
1524FIN-WS-0662026-02-15T20:58:45.834Z3300158801services.exeC:\Windows\System32\services.exeACME\idavis297875
1525FIN-WS-0662026-02-15T12:55:29.822Z3878236366spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis141318
1526FIN-WS-0662026-02-13T11:07:56.796Z1765749851MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis477036
1527FIN-WS-0662026-02-11T04:31:36.066Z6293815993OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis382638
1528SLS-WS-0672026-02-17T11:49:58.756Z523115svchost.exeC:\Windows\System32\svchost.exeACME\dlee23504
1529SLS-WS-0672026-02-15T02:37:58.726Z3805911421explorer.exeC:\Windows\System32\explorer.exeACME\dlee308209
1530SLS-WS-0672026-02-16T05:46:48.321Z1620045023chrome.exeC:\Windows\System32\chrome.exeACME\dlee24243
1531SLS-WS-0672026-02-11T07:00:43.376Z3869333895msedge.exeC:\Windows\System32\msedge.exeACME\dlee42957
1532SLS-WS-0672026-02-10T17:30:54.633Z94879169outlook.exeC:\Windows\System32\outlook.exeACME\dlee395232
1533SLS-WS-0672026-02-17T03:57:22.276Z494822463teams.exeC:\Windows\System32\teams.exeACME\dlee73628
1534SLS-WS-0672026-02-15T14:57:08.563Z4239844976code.exeC:\Windows\System32\code.exeACME\dlee42057
1535SLS-WS-0672026-02-15T15:24:25.280Z1387625218powershell.exeC:\Windows\System32\powershell.exeACME\dlee17826
1536SLS-WS-0672026-02-19T02:03:15.516Z2137919148cmd.exeC:\Windows\System32\cmd.exeACME\dlee375931
1537SLS-WS-0672026-02-13T18:58:40.784Z2550843957notepad.exeC:\Windows\System32\notepad.exeACME\dlee121573
1538SLS-WS-0672026-02-10T08:18:20.361Z32117614taskhostw.exeC:\Windows\System32\taskhostw.exeACME\dlee282789
1539SLS-WS-0672026-02-15T01:00:20.387Z5643559478RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\dlee250640
1540SLS-WS-0672026-02-16T17:37:20.164Z244655166SearchHost.exeC:\Windows\System32\SearchHost.exeACME\dlee394713
1541SLS-WS-0672026-02-12T03:58:34.840Z31307lsass.exeC:\Windows\System32\lsass.exeACME\dlee381328
1542SLS-WS-0672026-02-15T06:57:09.268Z283401csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM151462
1543SLS-WS-0672026-02-15T04:04:24.765Z4991657271winlogon.exeC:\Windows\System32\winlogon.exeACME\dlee392646
1544SLS-WS-0672026-02-12T00:11:28.019Z1890415817dwm.exeC:\Windows\System32\dwm.exeACME\dlee246234
1545SLS-WS-0672026-02-19T12:09:49.796Z6269516915SystemSystemNT AUTHORITY\SYSTEM163331
1546SLS-WS-0672026-02-20T17:08:06.455Z2777017936smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM115967
1547SLS-WS-0672026-02-10T23:27:58.440Z518750985services.exeC:\Windows\System32\services.exeACME\dlee423334
1548SLS-WS-0672026-02-11T19:04:54.723Z6492913787spoolsv.exeC:\Windows\System32\spoolsv.exeACME\dlee122633
1549SLS-WS-0672026-02-18T18:00:35.318Z3580143616MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\dlee426222
1550SLS-WS-0672026-02-14T23:38:51.593Z1697816005OneDrive.exeC:\Windows\System32\OneDrive.exeACME\dlee228915
1551ENG-WS-0682026-02-18T02:44:50.367Z155742svchost.exeC:\Windows\System32\svchost.exeACME\gwhite288324
1552ENG-WS-0682026-02-12T03:30:19.998Z2256935362explorer.exeC:\Windows\System32\explorer.exeACME\gwhite326591
1553ENG-WS-0682026-02-18T01:54:32.251Z2781058128chrome.exeC:\Windows\System32\chrome.exeACME\gwhite400559
1554ENG-WS-0682026-02-20T07:56:28.070Z2246539586msedge.exeC:\Windows\System32\msedge.exeACME\gwhite220997
1555ENG-WS-0682026-02-11T18:38:56.527Z358519833outlook.exeC:\Windows\System32\outlook.exeACME\gwhite109044
1556ENG-WS-0682026-02-11T18:02:51.981Z620659838teams.exeC:\Windows\System32\teams.exeACME\gwhite349834
1557ENG-WS-0682026-02-11T21:18:50.481Z577235338code.exeC:\Windows\System32\code.exeACME\gwhite192750
1558ENG-WS-0682026-02-15T13:27:18.082Z6183832960powershell.exeC:\Windows\System32\powershell.exeACME\gwhite273495
1559ENG-WS-0682026-02-16T18:11:14.674Z1290848298cmd.exeC:\Windows\System32\cmd.exeACME\gwhite362426
1560ENG-WS-0682026-02-15T07:17:47.331Z136001473notepad.exeC:\Windows\System32\notepad.exeACME\gwhite63669
1561ENG-WS-0682026-02-11T15:54:05.886Z176137378taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite407637
1562ENG-WS-0682026-02-15T04:50:31.320Z5045521716RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite348616
1563ENG-WS-0682026-02-19T17:45:00.641Z2713729626SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite240763
1564ENG-WS-0682026-02-17T15:51:56.814Z3275120lsass.exeC:\Windows\System32\lsass.exeACME\gwhite384016
1565ENG-WS-0682026-02-19T02:24:44.021Z638396csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM158378
1566ENG-WS-0682026-02-17T18:13:10.202Z1672358928winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite181140
1567ENG-WS-0682026-02-18T22:25:50.089Z1978948342dwm.exeC:\Windows\System32\dwm.exeACME\gwhite246860
1568ENG-WS-0682026-02-16T14:37:20.450Z2145642966SystemSystemNT AUTHORITY\SYSTEM230719
1569ENG-WS-0682026-02-12T17:38:22.031Z46486856smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM58787
1570ENG-WS-0682026-02-18T04:40:58.132Z2460153070services.exeC:\Windows\System32\services.exeACME\gwhite218716
1571ENG-WS-0682026-02-19T00:27:21.839Z5255534599spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite111591
1572ENG-WS-0682026-02-10T18:22:23.243Z777544256MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite157514
1573ENG-WS-0682026-02-18T17:04:54.010Z1040925475OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite167377
1574LEG-WS-0692026-02-16T06:58:22.042Z282318svchost.exeC:\Windows\System32\svchost.exeACME\svc_sql147697
1575LEG-WS-0692026-02-15T20:04:49.114Z6343428111explorer.exeC:\Windows\System32\explorer.exeACME\svc_sql195630
1576LEG-WS-0692026-02-17T17:11:11.019Z3375514106chrome.exeC:\Windows\System32\chrome.exeACME\svc_sql424363
1577LEG-WS-0692026-02-16T07:08:05.396Z92352549msedge.exeC:\Windows\System32\msedge.exeACME\svc_sql101884
1578LEG-WS-0692026-02-16T02:41:50.278Z5625722788outlook.exeC:\Windows\System32\outlook.exeACME\svc_sql181882
1579LEG-WS-0692026-02-15T07:03:29.270Z3309246762teams.exeC:\Windows\System32\teams.exeACME\svc_sql199211
1580LEG-WS-0692026-02-12T06:51:40.967Z1257844747code.exeC:\Windows\System32\code.exeACME\svc_sql421963
1581LEG-WS-0692026-02-10T16:36:58.639Z3113423035powershell.exeC:\Windows\System32\powershell.exeACME\svc_sql99230
1582LEG-WS-0692026-02-11T01:44:10.733Z3227041639cmd.exeC:\Windows\System32\cmd.exeACME\svc_sql82086
1583LEG-WS-0692026-02-12T06:03:52.313Z2558420134notepad.exeC:\Windows\System32\notepad.exeACME\svc_sql392091
1584LEG-WS-0692026-02-12T18:49:58.385Z53811437taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_sql410621
1585LEG-WS-0692026-02-12T00:35:35.457Z2886153452RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_sql448820
1586LEG-WS-0692026-02-16T00:50:16.486Z3393555261SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_sql257198
1587LEG-WS-0692026-02-20T11:57:52.963Z1644514lsass.exeC:\Windows\System32\lsass.exeACME\svc_sql490589
1588LEG-WS-0692026-02-16T06:16:36.665Z4842510csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM259830
1589LEG-WS-0692026-02-17T02:09:51.801Z284324922winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_sql433208
1590LEG-WS-0692026-02-17T17:36:10.008Z2060538032dwm.exeC:\Windows\System32\dwm.exeACME\svc_sql2408
1591LEG-WS-0692026-02-17T10:49:04.533Z4781948199SystemSystemNT AUTHORITY\SYSTEM62365
1592LEG-WS-0692026-02-14T13:10:22.745Z3700953948smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM331635
1593LEG-WS-0692026-02-12T15:09:26.620Z5366517604services.exeC:\Windows\System32\services.exeACME\svc_sql348149
1594LEG-WS-0692026-02-13T22:22:22.928Z4671015807spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_sql76283
1595LEG-WS-0692026-02-13T19:19:39.233Z1248038186MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_sql14980
1596LEG-WS-0692026-02-19T14:25:35.830Z113824893OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_sql452982
1597LEG-WS-0692026-02-15T05:53:51.386Z549882993spotify.exeC:\Users\svc_sql\AppData\Local\spotify\spotify.exeACME\svc_sql52162
1598MKT-WS-0702026-02-12T04:41:43.211Z353305svchost.exeC:\Windows\System32\svchost.exeACME\jsmith29890
1599MKT-WS-0702026-02-11T16:48:51.269Z2362315552explorer.exeC:\Windows\System32\explorer.exeACME\jsmith88480
1600MKT-WS-0702026-02-16T10:36:33.625Z288635606chrome.exeC:\Windows\System32\chrome.exeACME\jsmith302941
1601MKT-WS-0702026-02-14T07:52:13.030Z4718723651msedge.exeC:\Windows\System32\msedge.exeACME\jsmith402805
1602MKT-WS-0702026-02-16T06:48:42.628Z333034777outlook.exeC:\Windows\System32\outlook.exeACME\jsmith16920
1603MKT-WS-0702026-02-14T07:44:35.104Z1920127931teams.exeC:\Windows\System32\teams.exeACME\jsmith446296
1604MKT-WS-0702026-02-19T00:56:56.317Z293937737code.exeC:\Windows\System32\code.exeACME\jsmith9154
1605MKT-WS-0702026-02-13T07:30:07.632Z567556139powershell.exeC:\Windows\System32\powershell.exeACME\jsmith453657
1606MKT-WS-0702026-02-13T01:53:24.820Z3526211985cmd.exeC:\Windows\System32\cmd.exeACME\jsmith245229
1607MKT-WS-0702026-02-19T16:13:54.953Z5413023197notepad.exeC:\Windows\System32\notepad.exeACME\jsmith322857
1608MKT-WS-0702026-02-18T08:14:30.765Z473516628taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith475274
1609MKT-WS-0702026-02-16T05:55:55.486Z3202112647RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith415497
1610MKT-WS-0702026-02-13T17:02:55.732Z2580127540SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith387014
1611MKT-WS-0702026-02-15T20:42:47.807Z2650317lsass.exeC:\Windows\System32\lsass.exeACME\jsmith382524
1612MKT-WS-0702026-02-15T03:30:43.447Z3304212csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM226262
1613MKT-WS-0702026-02-12T05:42:08.226Z511422638winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith498127
1614MKT-WS-0702026-02-11T14:16:47.304Z6037313001dwm.exeC:\Windows\System32\dwm.exeACME\jsmith11455
1615MKT-WS-0702026-02-20T14:50:07.299Z1573854439SystemSystemNT AUTHORITY\SYSTEM28917
1616MKT-WS-0702026-02-13T12:20:35.570Z1017445235smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM457372
1617MKT-WS-0702026-02-14T10:28:48.525Z223991123services.exeC:\Windows\System32\services.exeACME\jsmith105484
1618MKT-WS-0702026-02-15T03:45:15.407Z839948727spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith438959
1619MKT-WS-0702026-02-20T01:17:37.079Z624384084MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith365402
1620MKT-WS-0702026-02-11T22:37:14.757Z4416023002OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith476875
1621EXEC-WS-0712026-02-16T16:06:15.195Z4342114svchost.exeC:\Windows\System32\svchost.exeACME\agarcia135851
1622EXEC-WS-0712026-02-16T22:55:38.784Z5108250337explorer.exeC:\Windows\System32\explorer.exeACME\agarcia165631
1623EXEC-WS-0712026-02-13T10:56:42.381Z2836358907chrome.exeC:\Windows\System32\chrome.exeACME\agarcia282493
1624EXEC-WS-0712026-02-15T04:42:08.160Z2734224931msedge.exeC:\Windows\System32\msedge.exeACME\agarcia406429
1625EXEC-WS-0712026-02-17T23:00:31.353Z4174643362outlook.exeC:\Windows\System32\outlook.exeACME\agarcia134372
1626EXEC-WS-0712026-02-19T06:13:45.609Z2708340340teams.exeC:\Windows\System32\teams.exeACME\agarcia63994
1627EXEC-WS-0712026-02-17T18:34:15.693Z1832210967code.exeC:\Windows\System32\code.exeACME\agarcia160938
1628EXEC-WS-0712026-02-10T09:15:42.380Z6471236powershell.exeC:\Windows\System32\powershell.exeACME\agarcia474979
1629EXEC-WS-0712026-02-19T01:13:21.739Z54848985cmd.exeC:\Windows\System32\cmd.exeACME\agarcia58559
1630EXEC-WS-0712026-02-20T03:11:40.168Z1397549910notepad.exeC:\Windows\System32\notepad.exeACME\agarcia233597
1631EXEC-WS-0712026-02-14T23:50:11.807Z1734212641taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia143221
1632EXEC-WS-0712026-02-11T08:24:18.807Z3215348050RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia398395
1633EXEC-WS-0712026-02-15T14:54:36.411Z3121015845SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia94500
1634EXEC-WS-0712026-02-11T20:49:02.976Z125836lsass.exeC:\Windows\System32\lsass.exeACME\agarcia445138
1635EXEC-WS-0712026-02-17T12:27:04.033Z4751718csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM118046
1636EXEC-WS-0712026-02-18T11:05:54.279Z3161528116winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia474753
1637EXEC-WS-0712026-02-17T22:34:44.620Z1087642187dwm.exeC:\Windows\System32\dwm.exeACME\agarcia457639
1638EXEC-WS-0712026-02-12T18:49:40.667Z1380247330SystemSystemNT AUTHORITY\SYSTEM173778
1639EXEC-WS-0712026-02-13T21:34:40.628Z30107676smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM63208
1640EXEC-WS-0712026-02-14T13:13:02.147Z3094832462services.exeC:\Windows\System32\services.exeACME\agarcia243150
1641EXEC-WS-0712026-02-20T17:40:20.926Z3542427726spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia230185
1642EXEC-WS-0712026-02-17T14:34:42.319Z52452872MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia27481
1643EXEC-WS-0712026-02-19T13:47:48.158Z24421345OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia314787
1644EXEC-WS-0712026-02-15T20:25:03.857Z3498310761utorrent.exeC:\Users\agarcia\AppData\Local\utorrent\utorrent.exeACME\agarcia387704
1645IT-WS-0722026-02-16T16:05:51.296Z1767216svchost.exeC:\Windows\System32\svchost.exeACME\svc_backup126189
1646IT-WS-0722026-02-16T20:22:26.493Z4093814206explorer.exeC:\Windows\System32\explorer.exeACME\svc_backup109086
1647IT-WS-0722026-02-15T15:03:01.631Z6282219851chrome.exeC:\Windows\System32\chrome.exeACME\svc_backup304008
1648IT-WS-0722026-02-10T22:01:23.204Z568618789msedge.exeC:\Windows\System32\msedge.exeACME\svc_backup207992
1649IT-WS-0722026-02-17T00:32:11.376Z6370438690outlook.exeC:\Windows\System32\outlook.exeACME\svc_backup204925
1650IT-WS-0722026-02-12T16:19:23.495Z6326258779teams.exeC:\Windows\System32\teams.exeACME\svc_backup168812
1651IT-WS-0722026-02-13T22:54:37.553Z6367945930code.exeC:\Windows\System32\code.exeACME\svc_backup185039
1652IT-WS-0722026-02-10T19:57:37.257Z4440734552powershell.exeC:\Windows\System32\powershell.exeACME\svc_backup10914
1653IT-WS-0722026-02-14T04:38:03.462Z3308931617cmd.exeC:\Windows\System32\cmd.exeACME\svc_backup405944
1654IT-WS-0722026-02-13T18:07:24.880Z2228130307notepad.exeC:\Windows\System32\notepad.exeACME\svc_backup497489
1655IT-WS-0722026-02-11T11:24:42.596Z4529313992taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_backup488074
1656IT-WS-0722026-02-17T23:50:58.380Z5005914738RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_backup290202
1657IT-WS-0722026-02-15T10:48:03.762Z900012720SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_backup349831
1658IT-WS-0722026-02-13T06:13:04.388Z4872718lsass.exeC:\Windows\System32\lsass.exeACME\svc_backup135305
1659IT-WS-0722026-02-20T01:12:22.161Z2553818csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM168630
1660IT-WS-0722026-02-17T06:54:22.356Z11837007winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_backup331856
1661IT-WS-0722026-02-12T21:08:17.649Z355995843dwm.exeC:\Windows\System32\dwm.exeACME\svc_backup193369
1662IT-WS-0722026-02-17T09:04:50.524Z4695259464SystemSystemNT AUTHORITY\SYSTEM448038
1663IT-WS-0722026-02-20T03:14:53.376Z725236089smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM93805
1664IT-WS-0722026-02-12T00:12:35.608Z4047914896services.exeC:\Windows\System32\services.exeACME\svc_backup212284
1665IT-WS-0722026-02-20T15:42:05.903Z4858718438spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_backup238825
1666IT-WS-0722026-02-15T05:29:02.457Z31104407MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_backup425652
1667IT-WS-0722026-02-12T22:24:03.328Z6296529512OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_backup441934
1668HR-WS-0732026-02-10T19:48:20.992Z25913svchost.exeC:\Windows\System32\svchost.exeACME\admin190476
1669HR-WS-0732026-02-10T19:03:19.786Z1272126421explorer.exeC:\Windows\System32\explorer.exeACME\admin155436
1670HR-WS-0732026-02-18T22:33:21.475Z5186947566chrome.exeC:\Windows\System32\chrome.exeACME\admin256032
1671HR-WS-0732026-02-15T06:14:43.479Z553412148msedge.exeC:\Windows\System32\msedge.exeACME\admin123159
1672HR-WS-0732026-02-10T17:30:58.887Z527841192outlook.exeC:\Windows\System32\outlook.exeACME\admin82704
1673HR-WS-0732026-02-12T01:15:25.578Z5766725532teams.exeC:\Windows\System32\teams.exeACME\admin340775
1674HR-WS-0732026-02-13T14:23:15.380Z3158930762code.exeC:\Windows\System32\code.exeACME\admin446310
1675HR-WS-0732026-02-16T13:28:00.053Z5086347764powershell.exeC:\Windows\System32\powershell.exeACME\admin369924
1676HR-WS-0732026-02-10T08:03:57.814Z4034849220cmd.exeC:\Windows\System32\cmd.exeACME\admin365502
1677HR-WS-0732026-02-11T12:57:25.867Z154419805notepad.exeC:\Windows\System32\notepad.exeACME\admin228384
1678HR-WS-0732026-02-14T09:03:07.449Z4048553889taskhostw.exeC:\Windows\System32\taskhostw.exeACME\admin321219
1679HR-WS-0732026-02-14T08:03:20.440Z6364623654RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\admin453934
1680HR-WS-0732026-02-11T05:14:09.279Z552016675SearchHost.exeC:\Windows\System32\SearchHost.exeACME\admin387435
1681HR-WS-0732026-02-12T06:43:03.816Z5644418lsass.exeC:\Windows\System32\lsass.exeACME\admin303645
1682HR-WS-0732026-02-17T16:32:09.276Z85973csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM253109
1683HR-WS-0732026-02-14T19:41:35.129Z2062633042winlogon.exeC:\Windows\System32\winlogon.exeACME\admin116039
1684HR-WS-0732026-02-18T18:13:21.625Z2376136937dwm.exeC:\Windows\System32\dwm.exeACME\admin12747
1685HR-WS-0732026-02-13T16:26:38.008Z3844932412SystemSystemNT AUTHORITY\SYSTEM104937
1686HR-WS-0732026-02-12T09:33:25.148Z4538924834smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM138309
1687HR-WS-0732026-02-20T13:29:00.938Z3799656779services.exeC:\Windows\System32\services.exeACME\admin71612
1688HR-WS-0732026-02-16T11:56:07.589Z3297241353spoolsv.exeC:\Windows\System32\spoolsv.exeACME\admin304516
1689HR-WS-0732026-02-17T11:30:39.052Z628933917MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\admin63979
1690HR-WS-0732026-02-13T15:56:28.136Z4330531220OneDrive.exeC:\Windows\System32\OneDrive.exeACME\admin207956
1691FIN-WS-0742026-02-17T04:53:44.060Z1650611svchost.exeC:\Windows\System32\svchost.exeACME\cjohnson419713
1692FIN-WS-0742026-02-20T02:04:21.936Z3886225137explorer.exeC:\Windows\System32\explorer.exeACME\cjohnson350988
1693FIN-WS-0742026-02-12T03:08:08.958Z4493111213chrome.exeC:\Windows\System32\chrome.exeACME\cjohnson219152
1694FIN-WS-0742026-02-18T07:57:15.791Z5313254320msedge.exeC:\Windows\System32\msedge.exeACME\cjohnson468092
1695FIN-WS-0742026-02-17T06:05:27.864Z4991037677outlook.exeC:\Windows\System32\outlook.exeACME\cjohnson178407
1696FIN-WS-0742026-02-15T20:10:37.898Z5080822587teams.exeC:\Windows\System32\teams.exeACME\cjohnson127168
1697FIN-WS-0742026-02-12T09:32:15.113Z3669810code.exeC:\Windows\System32\code.exeACME\cjohnson437806
1698FIN-WS-0742026-02-10T22:45:55.117Z2301735142powershell.exeC:\Windows\System32\powershell.exeACME\cjohnson369515
1699FIN-WS-0742026-02-18T10:16:27.230Z4649736261cmd.exeC:\Windows\System32\cmd.exeACME\cjohnson194087
1700FIN-WS-0742026-02-20T14:27:34.926Z2668841151notepad.exeC:\Windows\System32\notepad.exeACME\cjohnson129795
1701FIN-WS-0742026-02-13T08:27:40.662Z1674348890taskhostw.exeC:\Windows\System32\taskhostw.exeACME\cjohnson51811
1702FIN-WS-0742026-02-19T07:34:07.175Z4722256247RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\cjohnson266815
1703FIN-WS-0742026-02-19T02:42:11.547Z3403022905SearchHost.exeC:\Windows\System32\SearchHost.exeACME\cjohnson153204
1704FIN-WS-0742026-02-19T20:42:16.783Z6439118lsass.exeC:\Windows\System32\lsass.exeACME\cjohnson126851
1705FIN-WS-0742026-02-19T15:24:49.150Z604783csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM438170
1706FIN-WS-0742026-02-12T06:36:21.349Z4951559285winlogon.exeC:\Windows\System32\winlogon.exeACME\cjohnson381002
1707FIN-WS-0742026-02-20T01:56:44.225Z6488410820dwm.exeC:\Windows\System32\dwm.exeACME\cjohnson444395
1708FIN-WS-0742026-02-19T19:01:09.203Z6175053191SystemSystemNT AUTHORITY\SYSTEM266352
1709FIN-WS-0742026-02-13T08:08:20.610Z5144013843smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM261438
1710FIN-WS-0742026-02-17T11:23:49.749Z3830354843services.exeC:\Windows\System32\services.exeACME\cjohnson425693
1711FIN-WS-0742026-02-20T02:56:10.078Z124149123spoolsv.exeC:\Windows\System32\spoolsv.exeACME\cjohnson264187
1712FIN-WS-0742026-02-11T06:14:00.908Z527736597MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\cjohnson348180
1713FIN-WS-0742026-02-19T16:39:03.410Z311525737OneDrive.exeC:\Windows\System32\OneDrive.exeACME\cjohnson258489
1714SLS-WS-0752026-02-12T16:28:36.742Z79121svchost.exeC:\Windows\System32\svchost.exeACME\agarcia23809
1715SLS-WS-0752026-02-20T09:04:01.969Z115363591explorer.exeC:\Windows\System32\explorer.exeACME\agarcia258679
1716SLS-WS-0752026-02-14T21:11:18.442Z5722914437chrome.exeC:\Windows\System32\chrome.exeACME\agarcia262174
1717SLS-WS-0752026-02-15T01:45:03.423Z2047521028msedge.exeC:\Windows\System32\msedge.exeACME\agarcia138236
1718SLS-WS-0752026-02-16T20:39:25.884Z701331146outlook.exeC:\Windows\System32\outlook.exeACME\agarcia35811
1719SLS-WS-0752026-02-16T23:42:32.668Z3299717925teams.exeC:\Windows\System32\teams.exeACME\agarcia4046
1720SLS-WS-0752026-02-10T23:32:32.549Z127752030code.exeC:\Windows\System32\code.exeACME\agarcia395113
1721SLS-WS-0752026-02-18T22:32:27.459Z110657540powershell.exeC:\Windows\System32\powershell.exeACME\agarcia120384
1722SLS-WS-0752026-02-19T00:22:43.803Z157493965cmd.exeC:\Windows\System32\cmd.exeACME\agarcia361340
1723SLS-WS-0752026-02-17T20:21:33.267Z4192411143notepad.exeC:\Windows\System32\notepad.exeACME\agarcia145877
1724SLS-WS-0752026-02-16T11:11:31.439Z5413735984taskhostw.exeC:\Windows\System32\taskhostw.exeACME\agarcia134856
1725SLS-WS-0752026-02-11T03:55:20.231Z60111626RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\agarcia381993
1726SLS-WS-0752026-02-12T21:48:31.975Z5390258901SearchHost.exeC:\Windows\System32\SearchHost.exeACME\agarcia413754
1727SLS-WS-0752026-02-12T00:24:58.447Z5061519lsass.exeC:\Windows\System32\lsass.exeACME\agarcia187264
1728SLS-WS-0752026-02-19T08:06:04.805Z4338618csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM462315
1729SLS-WS-0752026-02-11T21:29:56.025Z521238125winlogon.exeC:\Windows\System32\winlogon.exeACME\agarcia403604
1730SLS-WS-0752026-02-13T02:38:30.180Z323459750dwm.exeC:\Windows\System32\dwm.exeACME\agarcia131993
1731SLS-WS-0752026-02-17T17:40:11.735Z4237729479SystemSystemNT AUTHORITY\SYSTEM499397
1732SLS-WS-0752026-02-14T06:21:16.116Z1903921222smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM272452
1733SLS-WS-0752026-02-19T12:28:04.549Z4803548704services.exeC:\Windows\System32\services.exeACME\agarcia163684
1734SLS-WS-0752026-02-16T07:21:08.721Z2803636857spoolsv.exeC:\Windows\System32\spoolsv.exeACME\agarcia52749
1735SLS-WS-0752026-02-17T12:04:12.702Z2456459333MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\agarcia286937
1736SLS-WS-0752026-02-12T09:00:57.449Z4888154400OneDrive.exeC:\Windows\System32\OneDrive.exeACME\agarcia479229
1737DC-012026-02-13T13:23:32.191Z4080015svchost.exeC:\Windows\System32\svchost.exeACME\emartinez464474
1738DC-012026-02-20T08:40:27.698Z301641357explorer.exeC:\Windows\System32\explorer.exeACME\emartinez55690
1739DC-012026-02-15T03:20:47.293Z1920333873chrome.exeC:\Windows\System32\chrome.exeACME\emartinez361539
1740DC-012026-02-12T06:16:50.359Z787939635msedge.exeC:\Windows\System32\msedge.exeACME\emartinez354027
1741DC-012026-02-10T11:44:01.205Z4000949506outlook.exeC:\Windows\System32\outlook.exeACME\emartinez268884
1742DC-012026-02-12T15:41:42.331Z5176514795teams.exeC:\Windows\System32\teams.exeACME\emartinez274792
1743DC-012026-02-19T02:42:15.795Z582968705code.exeC:\Windows\System32\code.exeACME\emartinez198090
1744DC-012026-02-11T14:19:19.969Z2287627760powershell.exeC:\Windows\System32\powershell.exeACME\emartinez247494
1745DC-012026-02-18T16:49:15.039Z3514141719cmd.exeC:\Windows\System32\cmd.exeACME\emartinez305451
1746DC-012026-02-19T13:43:39.549Z2491135715notepad.exeC:\Windows\System32\notepad.exeACME\emartinez72125
1747DC-012026-02-14T14:51:25.979Z2480626521taskhostw.exeC:\Windows\System32\taskhostw.exeACME\emartinez324494
1748DC-012026-02-14T08:15:31.572Z381287845RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\emartinez444476
1749DC-012026-02-16T05:37:55.976Z3772155406SearchHost.exeC:\Windows\System32\SearchHost.exeACME\emartinez83771
1750DC-012026-02-19T09:19:23.304Z4785615lsass.exeC:\Windows\System32\lsass.exeACME\emartinez354423
1751DC-012026-02-18T18:57:22.886Z185717csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM223494
1752DC-012026-02-14T06:12:26.798Z4571551529winlogon.exeC:\Windows\System32\winlogon.exeACME\emartinez240073
1753DC-012026-02-18T13:48:48.466Z6040859417dwm.exeC:\Windows\System32\dwm.exeACME\emartinez486684
1754DC-012026-02-14T18:03:16.939Z3542548159SystemSystemNT AUTHORITY\SYSTEM441359
1755DC-012026-02-14T22:34:44.447Z3923429585smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM168667
1756DC-012026-02-19T19:24:42.138Z3945159646services.exeC:\Windows\System32\services.exeACME\emartinez258157
1757DC-012026-02-12T13:29:06.864Z2852131714spoolsv.exeC:\Windows\System32\spoolsv.exeACME\emartinez349872
1758DC-012026-02-16T20:39:52.934Z5202352903MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\emartinez9241
1759DC-012026-02-15T03:35:32.674Z267159242OneDrive.exeC:\Windows\System32\OneDrive.exeACME\emartinez18846
1760DC-022026-02-12T08:02:07.384Z344725svchost.exeC:\Windows\System32\svchost.exeACME\fthompson384278
1761DC-022026-02-15T06:44:23.947Z1636551240explorer.exeC:\Windows\System32\explorer.exeACME\fthompson440305
1762DC-022026-02-16T05:28:58.793Z5914014778chrome.exeC:\Windows\System32\chrome.exeACME\fthompson147324
1763DC-022026-02-13T06:37:54.525Z3074650715msedge.exeC:\Windows\System32\msedge.exeACME\fthompson49958
1764DC-022026-02-17T19:43:27.026Z6082543634outlook.exeC:\Windows\System32\outlook.exeACME\fthompson228566
1765DC-022026-02-15T13:01:38.426Z3278636956teams.exeC:\Windows\System32\teams.exeACME\fthompson428802
1766DC-022026-02-10T21:02:57.505Z2224029512code.exeC:\Windows\System32\code.exeACME\fthompson129938
1767DC-022026-02-16T00:09:21.801Z4235553778powershell.exeC:\Windows\System32\powershell.exeACME\fthompson493568
1768DC-022026-02-19T02:01:43.686Z2422217238cmd.exeC:\Windows\System32\cmd.exeACME\fthompson2607
1769DC-022026-02-18T04:49:04.193Z4885048821notepad.exeC:\Windows\System32\notepad.exeACME\fthompson82503
1770DC-022026-02-20T16:44:51.923Z543130240taskhostw.exeC:\Windows\System32\taskhostw.exeACME\fthompson493253
1771DC-022026-02-11T00:40:38.742Z138698966RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\fthompson115242
1772DC-022026-02-13T19:04:02.933Z29841924SearchHost.exeC:\Windows\System32\SearchHost.exeACME\fthompson419490
1773DC-022026-02-16T09:56:48.919Z2885818lsass.exeC:\Windows\System32\lsass.exeACME\fthompson419886
1774DC-022026-02-15T19:19:18.569Z4129617csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM8917
1775DC-022026-02-20T13:47:45.157Z6453010873winlogon.exeC:\Windows\System32\winlogon.exeACME\fthompson407729
1776DC-022026-02-16T11:06:20.334Z4441410351dwm.exeC:\Windows\System32\dwm.exeACME\fthompson429274
1777DC-022026-02-18T10:18:16.653Z2280921967SystemSystemNT AUTHORITY\SYSTEM457489
1778DC-022026-02-14T11:35:15.815Z5364032863smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM397699
1779DC-022026-02-15T16:01:00.696Z143863714services.exeC:\Windows\System32\services.exeACME\fthompson282818
1780DC-022026-02-18T19:33:04.744Z1420932747spoolsv.exeC:\Windows\System32\spoolsv.exeACME\fthompson17739
1781DC-022026-02-17T22:58:46.559Z2884639320MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\fthompson381454
1782DC-022026-02-17T13:44:28.911Z458454661OneDrive.exeC:\Windows\System32\OneDrive.exeACME\fthompson316234
1783FILE-012026-02-12T07:06:21.020Z274565svchost.exeC:\Windows\System32\svchost.exeACME\jsmith348225
1784FILE-012026-02-13T22:26:55.556Z426475546explorer.exeC:\Windows\System32\explorer.exeACME\jsmith148892
1785FILE-012026-02-13T12:38:25.888Z1483550754chrome.exeC:\Windows\System32\chrome.exeACME\jsmith328522
1786FILE-012026-02-18T22:39:32.317Z526036994msedge.exeC:\Windows\System32\msedge.exeACME\jsmith163701
1787FILE-012026-02-15T01:31:56.706Z5861755809outlook.exeC:\Windows\System32\outlook.exeACME\jsmith335606
1788FILE-012026-02-13T07:19:01.506Z3587958406teams.exeC:\Windows\System32\teams.exeACME\jsmith390340
1789FILE-012026-02-11T15:00:41.097Z2611732080code.exeC:\Windows\System32\code.exeACME\jsmith369735
1790FILE-012026-02-18T08:49:19.241Z2892549545powershell.exeC:\Windows\System32\powershell.exeACME\jsmith154716
1791FILE-012026-02-16T21:48:36.279Z4005334731cmd.exeC:\Windows\System32\cmd.exeACME\jsmith435515
1792FILE-012026-02-12T19:54:07.386Z3848724815notepad.exeC:\Windows\System32\notepad.exeACME\jsmith106951
1793FILE-012026-02-18T23:35:35.259Z2778824588taskhostw.exeC:\Windows\System32\taskhostw.exeACME\jsmith380739
1794FILE-012026-02-20T10:28:50.051Z563523181RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\jsmith132416
1795FILE-012026-02-20T01:22:14.852Z693927464SearchHost.exeC:\Windows\System32\SearchHost.exeACME\jsmith331923
1796FILE-012026-02-20T08:59:15.064Z4570813lsass.exeC:\Windows\System32\lsass.exeACME\jsmith94609
1797FILE-012026-02-15T14:21:42.800Z175321csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM199958
1798FILE-012026-02-17T06:10:56.082Z1084436776winlogon.exeC:\Windows\System32\winlogon.exeACME\jsmith30806
1799FILE-012026-02-17T18:20:10.949Z556358453dwm.exeC:\Windows\System32\dwm.exeACME\jsmith75827
1800FILE-012026-02-14T05:02:46.860Z556206721SystemSystemNT AUTHORITY\SYSTEM448262
1801FILE-012026-02-15T00:12:19.129Z2619227877smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM34066
1802FILE-012026-02-16T18:55:27.002Z4446256839services.exeC:\Windows\System32\services.exeACME\jsmith268836
1803FILE-012026-02-15T04:11:30.469Z305807883spoolsv.exeC:\Windows\System32\spoolsv.exeACME\jsmith4829
1804FILE-012026-02-13T19:24:10.679Z1764851613MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\jsmith320902
1805FILE-012026-02-16T13:38:43.022Z3760452666OneDrive.exeC:\Windows\System32\OneDrive.exeACME\jsmith376636
1806EXCH-012026-02-19T19:30:50.056Z531823svchost.exeC:\Windows\System32\svchost.exeACME\gwhite455272
1807EXCH-012026-02-20T01:26:01.750Z3996136165explorer.exeC:\Windows\System32\explorer.exeACME\gwhite12742
1808EXCH-012026-02-11T03:41:32.857Z992011403chrome.exeC:\Windows\System32\chrome.exeACME\gwhite55882
1809EXCH-012026-02-17T01:57:42.769Z3648938282msedge.exeC:\Windows\System32\msedge.exeACME\gwhite17987
1810EXCH-012026-02-12T07:42:01.565Z206242390outlook.exeC:\Windows\System32\outlook.exeACME\gwhite164834
1811EXCH-012026-02-19T09:00:39.602Z253177242teams.exeC:\Windows\System32\teams.exeACME\gwhite333418
1812EXCH-012026-02-12T19:28:49.853Z599031143code.exeC:\Windows\System32\code.exeACME\gwhite48156
1813EXCH-012026-02-19T16:46:54.934Z6159031719powershell.exeC:\Windows\System32\powershell.exeACME\gwhite135641
1814EXCH-012026-02-13T05:42:23.065Z598225866cmd.exeC:\Windows\System32\cmd.exeACME\gwhite439022
1815EXCH-012026-02-14T03:03:12.832Z6196122739notepad.exeC:\Windows\System32\notepad.exeACME\gwhite172813
1816EXCH-012026-02-20T14:31:11.362Z572852959taskhostw.exeC:\Windows\System32\taskhostw.exeACME\gwhite130693
1817EXCH-012026-02-20T01:24:04.453Z5642013629RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\gwhite179420
1818EXCH-012026-02-11T02:44:54.848Z2396638570SearchHost.exeC:\Windows\System32\SearchHost.exeACME\gwhite417210
1819EXCH-012026-02-18T02:29:57.790Z6482710lsass.exeC:\Windows\System32\lsass.exeACME\gwhite46702
1820EXCH-012026-02-14T13:32:36.162Z2296814csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM13348
1821EXCH-012026-02-14T07:27:42.115Z4533612971winlogon.exeC:\Windows\System32\winlogon.exeACME\gwhite123023
1822EXCH-012026-02-17T18:44:45.380Z3368927105dwm.exeC:\Windows\System32\dwm.exeACME\gwhite267871
1823EXCH-012026-02-10T12:46:08.552Z2628921908SystemSystemNT AUTHORITY\SYSTEM235095
1824EXCH-012026-02-13T01:28:38.987Z6152319404smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM171719
1825EXCH-012026-02-18T16:52:35.611Z1185459036services.exeC:\Windows\System32\services.exeACME\gwhite445205
1826EXCH-012026-02-11T00:04:31.113Z42794194spoolsv.exeC:\Windows\System32\spoolsv.exeACME\gwhite298116
1827EXCH-012026-02-14T03:28:23.050Z584327180MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\gwhite209490
1828EXCH-012026-02-10T12:55:12.260Z1711630314OneDrive.exeC:\Windows\System32\OneDrive.exeACME\gwhite206981
1829WEB-012026-02-15T09:21:40.443Z2808416svchost.exeC:\Windows\System32\svchost.exeACME\idavis328737
1830WEB-012026-02-19T03:30:24.785Z659353987explorer.exeC:\Windows\System32\explorer.exeACME\idavis139825
1831WEB-012026-02-18T15:11:20.173Z432720346chrome.exeC:\Windows\System32\chrome.exeACME\idavis79511
1832WEB-012026-02-13T04:51:57.488Z1805956218msedge.exeC:\Windows\System32\msedge.exeACME\idavis492021
1833WEB-012026-02-18T08:43:11.070Z2849018103outlook.exeC:\Windows\System32\outlook.exeACME\idavis35012
1834WEB-012026-02-13T15:05:12.652Z4499753873teams.exeC:\Windows\System32\teams.exeACME\idavis182480
1835WEB-012026-02-16T06:41:06.489Z602211706code.exeC:\Windows\System32\code.exeACME\idavis351590
1836WEB-012026-02-20T08:51:54.208Z1749812967powershell.exeC:\Windows\System32\powershell.exeACME\idavis386308
1837WEB-012026-02-19T00:22:02.669Z497035073cmd.exeC:\Windows\System32\cmd.exeACME\idavis146402
1838WEB-012026-02-14T06:39:15.651Z267458245notepad.exeC:\Windows\System32\notepad.exeACME\idavis110423
1839WEB-012026-02-16T14:15:44.988Z3932810154taskhostw.exeC:\Windows\System32\taskhostw.exeACME\idavis136026
1840WEB-012026-02-14T13:00:25.429Z4184548059RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\idavis52575
1841WEB-012026-02-12T11:06:49.188Z5119559359SearchHost.exeC:\Windows\System32\SearchHost.exeACME\idavis482091
1842WEB-012026-02-10T20:17:28.865Z299683lsass.exeC:\Windows\System32\lsass.exeACME\idavis157905
1843WEB-012026-02-11T09:55:37.305Z4061619csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM91711
1844WEB-012026-02-20T06:23:43.186Z2823250295winlogon.exeC:\Windows\System32\winlogon.exeACME\idavis475070
1845WEB-012026-02-20T12:48:44.360Z5105718467dwm.exeC:\Windows\System32\dwm.exeACME\idavis124506
1846WEB-012026-02-13T02:19:13.038Z6340533945SystemSystemNT AUTHORITY\SYSTEM248513
1847WEB-012026-02-17T23:13:15.990Z467171795smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM295105
1848WEB-012026-02-18T16:12:35.295Z652337839services.exeC:\Windows\System32\services.exeACME\idavis340296
1849WEB-012026-02-10T20:10:29.527Z122623848spoolsv.exeC:\Windows\System32\spoolsv.exeACME\idavis318573
1850WEB-012026-02-19T06:42:21.514Z633025212MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\idavis126399
1851WEB-012026-02-17T23:37:54.305Z3722944411OneDrive.exeC:\Windows\System32\OneDrive.exeACME\idavis80400
1852SQL-012026-02-11T15:46:08.267Z6237913svchost.exeC:\Windows\System32\svchost.exeACME\svc_web306438
1853SQL-012026-02-19T09:47:47.191Z145198888explorer.exeC:\Windows\System32\explorer.exeACME\svc_web225679
1854SQL-012026-02-18T02:41:49.234Z2377832186chrome.exeC:\Windows\System32\chrome.exeACME\svc_web63793
1855SQL-012026-02-19T07:42:16.362Z738245606msedge.exeC:\Windows\System32\msedge.exeACME\svc_web319545
1856SQL-012026-02-13T09:16:10.358Z1116446518outlook.exeC:\Windows\System32\outlook.exeACME\svc_web301908
1857SQL-012026-02-11T18:59:58.206Z488107187teams.exeC:\Windows\System32\teams.exeACME\svc_web404359
1858SQL-012026-02-18T09:13:50.393Z4885759745code.exeC:\Windows\System32\code.exeACME\svc_web2387
1859SQL-012026-02-14T18:54:07.829Z580201842powershell.exeC:\Windows\System32\powershell.exeACME\svc_web457661
1860SQL-012026-02-15T21:00:05.148Z1576249786cmd.exeC:\Windows\System32\cmd.exeACME\svc_web269635
1861SQL-012026-02-19T22:54:35.273Z1398359830notepad.exeC:\Windows\System32\notepad.exeACME\svc_web344770
1862SQL-012026-02-13T03:03:48.170Z4090211238taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_web61808
1863SQL-012026-02-16T06:37:48.099Z2726032466RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_web259790
1864SQL-012026-02-11T14:35:10.853Z2960026313SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_web376047
1865SQL-012026-02-10T09:58:03.006Z3765714lsass.exeC:\Windows\System32\lsass.exeACME\svc_web326171
1866SQL-012026-02-11T07:43:18.165Z531663csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM74762
1867SQL-012026-02-11T21:20:03.785Z4026956929winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_web120770
1868SQL-012026-02-13T17:34:03.847Z6209246182dwm.exeC:\Windows\System32\dwm.exeACME\svc_web65443
1869SQL-012026-02-12T12:23:28.306Z1641248049SystemSystemNT AUTHORITY\SYSTEM109162
1870SQL-012026-02-14T05:20:07.137Z549459459smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM185691
1871SQL-012026-02-17T17:57:43.800Z2839611081services.exeC:\Windows\System32\services.exeACME\svc_web285927
1872SQL-012026-02-17T19:52:58.249Z5634630273spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_web377650
1873SQL-012026-02-17T14:30:50.711Z2048823302MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_web333254
1874SQL-012026-02-13T04:09:54.033Z154050655OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_web488381
1875PROXY-012026-02-12T23:25:17.262Z193719svchost.exeC:\Windows\System32\svchost.exeACME\svc_backup140725
1876PROXY-012026-02-17T06:16:54.740Z5209429349explorer.exeC:\Windows\System32\explorer.exeACME\svc_backup48240
1877PROXY-012026-02-14T19:16:37.868Z4964854666chrome.exeC:\Windows\System32\chrome.exeACME\svc_backup87946
1878PROXY-012026-02-16T16:28:22.699Z3495543759msedge.exeC:\Windows\System32\msedge.exeACME\svc_backup91828
1879PROXY-012026-02-17T02:37:54.254Z518035237outlook.exeC:\Windows\System32\outlook.exeACME\svc_backup153185
1880PROXY-012026-02-16T00:51:00.113Z1880625407teams.exeC:\Windows\System32\teams.exeACME\svc_backup427145
1881PROXY-012026-02-14T12:02:39.504Z602236441code.exeC:\Windows\System32\code.exeACME\svc_backup197838
1882PROXY-012026-02-15T10:03:06.968Z863039283powershell.exeC:\Windows\System32\powershell.exeACME\svc_backup112138
1883PROXY-012026-02-19T05:19:07.102Z3438728368cmd.exeC:\Windows\System32\cmd.exeACME\svc_backup150363
1884PROXY-012026-02-17T14:06:17.147Z4229556892notepad.exeC:\Windows\System32\notepad.exeACME\svc_backup468441
1885PROXY-012026-02-17T00:24:39.825Z4333641978taskhostw.exeC:\Windows\System32\taskhostw.exeACME\svc_backup461427
1886PROXY-012026-02-20T10:44:15.675Z152189374RuntimeBroker.exeC:\Windows\System32\RuntimeBroker.exeACME\svc_backup86157
1887PROXY-012026-02-11T18:45:48.305Z1436759489SearchHost.exeC:\Windows\System32\SearchHost.exeACME\svc_backup73464
1888PROXY-012026-02-19T06:01:10.040Z166286lsass.exeC:\Windows\System32\lsass.exeACME\svc_backup105856
1889PROXY-012026-02-17T21:15:36.239Z2978718csrss.exeC:\Windows\System32\csrss.exeNT AUTHORITY\SYSTEM206934
1890PROXY-012026-02-11T03:38:57.611Z3368348997winlogon.exeC:\Windows\System32\winlogon.exeACME\svc_backup179494
1891PROXY-012026-02-13T09:24:07.673Z165746917dwm.exeC:\Windows\System32\dwm.exeACME\svc_backup72521
1892PROXY-012026-02-18T10:27:49.504Z6130134275SystemSystemNT AUTHORITY\SYSTEM494587
1893PROXY-012026-02-13T06:01:42.525Z5340435587smss.exeC:\Windows\System32\smss.exeNT AUTHORITY\SYSTEM183041
1894PROXY-012026-02-13T05:22:52.998Z40144586services.exeC:\Windows\System32\services.exeACME\svc_backup245130
1895PROXY-012026-02-11T06:34:10.531Z1864845752spoolsv.exeC:\Windows\System32\spoolsv.exeACME\svc_backup223457
1896PROXY-012026-02-13T04:16:19.899Z2055914179MsMpEng.exeC:\Windows\System32\MsMpEng.exeACME\svc_backup41897
1897PROXY-012026-02-15T02:33:38.037Z32922656OneDrive.exeC:\Windows\System32\OneDrive.exeACME\svc_backup158073