| Server IP : 180.180.241.3 / Your IP : 216.73.216.216 Web Server : Microsoft-IIS/7.5 System : Windows NT NETWORK-NHRC 6.1 build 7601 (Windows Server 2008 R2 Standard Edition Service Pack 1) i586 User : IUSR ( 0) PHP Version : 5.3.28 Disable Function : NONE MySQL : ON | cURL : ON | WGET : OFF | Perl : OFF | Python : OFF | Sudo : OFF | Pkexec : OFF Directory : /ProgramData/Sophos/AutoUpdate/Cache/savxp/program files/Sophos/Sophos Anti-Virus/ |
Upload File : |
ProtectDetails 000d:integrity.dat 0005:1.0.2 000e:Sophos Limited 0003:SAV 000a:10.8.4.227 2019-04-14T15:25:24Z
ProtectService 000a:SavService 10 2 1 0037:%SophosProgramFiles32%\Sophos Anti-Virus\SAVService.exe ObjectName 0019:NT AUTHORITY\LocalService Group 0008:PlugPlay DependOnService 0005:RPCSS FailureActions 003e:08070000000000000000000002000000140000000100000000000000000000
ProtectService 000f:SavAdminService 10 2 1 003c:%SophosProgramFiles32%\Sophos Anti-Virus\SAVAdminService.exe ObjectName 000b:LocalSystem FailureActions 003e:08070000000000000000000002000000140000000100000000000000000000
ProtectService 000b:SAVOnAccess 2 1 1 002d:%SystemRoot%\system32\Drivers\savonaccess.sys DependOnService 0006:FltMgr
ProtectService 0010:SophosBootDriver 2f 4 0 0032:%SystemRoot%\system32\Drivers\SophosBootDriver.sys
ProtectApplication 0029:%SystemRoot%\system32\SophosBootTasks.exe
ProtectApplication 0032:%SophosProgramFiles32%\Sophos Anti-Virus\ssr32.exe
ProtectApplication 0032:%SophosProgramFiles32%\Sophos Anti-Virus\ssr64.exe
ProtectRegKey 0021:%HKLMSophosSoftware32%\SAVService RecursiveReadOnly
ProtectRegKey 0033:%HKLMSophosSoftware32%\AutoUpdate\Plugins\SAVPlugin RecursiveReadOnly
ProtectRegKey 0037:%HKLMSophosSoftware32%\AutoUpdate\Plugins\SAVUserPlugin RecursiveReadOnly
ProtectRegKey 0051:%HKLMSophosSoftware32%\AutoUpdate\Products\{E17FE03B-0501-4aaa-BC69-0129D965F311} RecursiveReadOnly
ProtectRegKey 004c:%HKLMSophosSoftware32%\Remote Management System\ManagementAgent\Adapters\SAV RecursiveReadOnly
ProtectRegKey 003e:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\SavService RecursiveReadOnly
ProtectRegKey 0043:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\SavAdminService RecursiveReadOnly
ProtectRegKey 003f:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\savonaccess RecursiveReadOnly
ProtectRegKey 0044:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\SophosBootDriver RecursiveReadOnly
ProtectRegKey 006b:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\Sophos Endpoint Defense\TamperProtection\Components\SAV RecursiveReadOnly
ProtectRegKey 0070:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\Sophos Endpoint Defense\TamperProtection\Services\SavService RecursiveReadOnly
ProtectRegKey 0075:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\Sophos Endpoint Defense\TamperProtection\Services\SavAdminService RecursiveReadOnly
ProtectRegKey 0071:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\Sophos Endpoint Defense\TamperProtection\Services\savonaccess RecursiveReadOnly
ProtectRegKey 0076:\REGISTRY\MACHINE\SYSTEM\CurrentControlSet\services\Sophos Endpoint Defense\TamperProtection\Services\SophosBootDriver RecursiveReadOnly
ProtectDirectory 0028:%SophosProgramFiles32%\Sophos Anti-Virus RecursiveReadOnly
ProtectDirectory 0025:%SophosProgramData%\Sophos Anti-Virus RecursiveReadOnly
ProtectDirectory 002e:%SophosProgramData%\Sophos Anti-Virus\INFECTED AllowChangeFiles
ProtectDirectory 0027:%SophosProgramData%\Sophos Data Control RecursiveReadOnly
ProtectDirectory 0029:%SophosProgramData%\Sophos Device Control RecursiveReadOnly
ProtectDirectory 002c:%SophosProgramData%\Sophos Tamper Protection RecursiveReadOnly
ProtectDirectory 001e:%SystemRoot%\system32\SophosAV RecursiveReadOnly
ProtectDirectory 001e:%SystemRoot%\SysWOW64\SophosAV RecursiveReadOnly
DigitalSignature 0005:TP001 RSA-2048_SHA-256 0158:Rbk74M3+5zu5Nl1S80/pLFqOWrp3YTsvptoRqQ5hWtx3SsFFl6/91dvwgAYtP0SlCOEIzbnmxRKiomLz4U/TTdhD4iY9TCB63CpepeOjD+Y/gR/jDmGwRlB/QT4yzHRaJ+AxmTQZcxtJs2f9FUCvFnKvm07SGQ06Y4lrF3qxHC/AHZ1nPQGiIQx5RTZ6CwgWBXRGxp2oCwbstjX9tyhSdPxM+mUlidUtmLBwnVTPMBfH9w4KKCrOrZ35V3IUg0o77BYADJm5PaQ91kwWftCo5dzOd4Cc1OqZVfRYW+sc1+BkTho/S7oOeUlnJ1qHN+AW5RYX+162wk2ByHPvx63iew==