Поддержка
Круглосуточная поддержка

Позвоните

Бесплатно по России:
8-800-333-79-32

ЧаВо | Форум

Ваши запросы

  • Все: -
  • Незакрытые: -
  • Последний: -

Позвоните

Бесплатно по России:
8-800-333-79-32

Свяжитесь с нами Незакрытые запросы: 

Профиль

Профиль

Adware.Bandoo.18

Добавлен в вирусную базу Dr.Web: 2014-08-12

Описание добавлено:

Техническая информация

Для обеспечения автозапуска и распространения:
Модифицирует следующие ключи реестра:
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jumpflip] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\volaro] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vonteera] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotector.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchsettings64.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\umbrella.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls] 'x86' = ''
  • [<HKLM>\SYSTEM\ControlSet001\Control\Session Manager\AppCertDlls] 'x64' = '%PROGRAM_FILES%\music app\datamngr\x64\apcrtldr.dll'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchinstaller.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroids.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\websteroidsservice.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dprotectsvc.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\snapdo.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browsersafeguard.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst64.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\searchprotection.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utiljumpflip.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bpsvc.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\protectedsearch.exe] 'debugger' = 'tasklist.exe'
  • [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\stinst32.exe] 'debugger' = 'tasklist.exe'
Создает следующие сервисы:
  • [<HKLM>\SYSTEM\ControlSet001\Services\F06DEFF2-5B9C-490D-910F-35D3A9119622] 'Start' = '00000001'
  • [<HKLM>\SYSTEM\ControlSet001\Services\DatamngrCoordinator] 'Start' = '00000002'
Вредоносные функции:
Для обхода брандмауэра удаляет или модифицирует следующие ключи реестра:
  • [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe' = '%PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe:*:Enabled:Music Search App (Dist. by Bandoo Media, Inc.) DTX Broker'
Создает и запускает на исполнение:
  • '%PROGRAM_FILES%\Music App\Datamngr\DatamngrCoordinator.exe'
  • '%PROGRAM_FILES%\Music App\Datamngr\DatamngrCoordinator.exe' -install
  • '%PROGRAM_FILES%\Music App\Datamngr\DatamngrUI.exe'
  • '%PROGRAM_FILES%\Music App\Datamngr\DatamngrCoordinator.exe' -monitor 400
  • '%TEMP%\nst4\nsa8.tmp\LphantMediaBar.exe' /S /appId=0 /sysId=4 /trackId=IME004 /userGuid=4492542501694115 /FORCELANGUAGE=1033 /d=4-0 /v=n13674-304 /t=4 /SkipDefaultSearch /trgb=CR /D=%PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1
  • '%TEMP%\nst4\nsa8.tmp\mediabar.exe' "-o%TEMP%\nst4\nsa8.tmp" -y
  • '%TEMP%\nst4\nsa8.tmp\pack.exe' "-o%PROGRAM_FILES%\Music App\Datamngr" -y
  • '%TEMP%\nst4\nsa8.tmp\LphantMediaBar.exe' /S /appId=0 /sysId=4 /trackId=IME004 /userGuid=4492542501694115 /FORCELANGUAGE=1033 /d=4-0 /v=n13674-304 /t=4 /SkipDefaultSearch /trgb=FF /D=%PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1
  • '%TEMP%\nst4\nsa8.tmp\LphantMediaBar.exe' /S /appId=0 /sysId=4 /trackId=IME004 /userGuid=4492542501694115 /FORCELANGUAGE=1033 /d=4-0 /v=n13674-304 /t=4 /SkipDefaultSearch /trgb=IE /D=%PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1
Запускает на исполнение:
  • '<SYSTEM32>\regsvr32.exe' /s "%PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\searchresultsDx.dll"
  • '<SYSTEM32>\taskkill.exe' /F /PID 1524
  • '<SYSTEM32>\regsvr32.exe' /s %PROGRAM_FILES%\Music App\Datamngr\IEBHO.dll
  • '%WINDIR%\explorer.exe'
Завершает или пытается завершить
следующие системные процессы:
  • %WINDIR%\Explorer.EXE
следующие пользовательские процессы:
  • iexplore.exe
Перехватывает следующие функции в SSDT (System Service Descriptor Table):
  • NtOpenThread, драйвер-обработчик: setmgrc2.cfg
  • NtOpenProcess, драйвер-обработчик: setmgrc2.cfg
Без разрешения пользователя устанавливает новую стартовую страницу для Windows Internet Explorer.
Изменения в файловой системе:
Создает следующие файлы:
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-launch.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-launch-over.png
  • %ALLUSERSPROFILE%\Application Data\Datamngr\S-1-5-21-2052111302-484763869-725345543-1003.cfg
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-mdl-over.png
  • %ALLUSERSPROFILE%\Application Data\Datamngr\coordinator.cfg
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-right22.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-right22-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-install.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-drag.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-previous-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-play-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-right-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-previous.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-play-left-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-moredetails.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-mdl.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-next.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-next-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-left-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-back.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-add.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-track-y.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-thumb-y.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-add-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-trackend-y.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-left22.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-left22-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-middle22.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-middle22-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-grey.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-grey-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-greyover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-tags.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-pref.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-Add.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-user-monitor.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-pref-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-joystick24.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-info.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-play.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-news24.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\like_over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\like.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\menul-bgover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\menul-bgon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\left-menu-hover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-download.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-Info.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-shop.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-play.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\dislike_over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\dislike.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\featured-bg-btm-gradient.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\categories-bg-gradient-grid.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-try-left-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-search-pnlbtm.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bullet-orange.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-try-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-dollar.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-calendar.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-info-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-download.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-box-next.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-middle.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\gamethumb2-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\gamethumb-on.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\main.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupWidgets.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\bg.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\css\dialog.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupGames.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\jquery.qtip.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\ie7-only.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupAbout.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\panels.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\default.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-middle.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-wide-close.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-close.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-close-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-wide-close-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-search.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\debugbar\debug.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\yahoo.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gameData.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\footer.htm
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\throbber.gif
  • %PROGRAM_FILES%\Music App\Datamngr\Uninstall.exe
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\transparent_1px.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\toolbarsplitter.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupWidgets.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupHTML.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\ie-only.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\scroll.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupGames.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gamecategory.xsl
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gameList.xsl
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\initHTML.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gametype.xsl
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-off-l.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-down-white.png
  • %ALLUSERSPROFILE%\Application Data\Datamngr\general.cfg
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-dn.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\apps-bg-gradient-grid.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ajax-loader.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\appsfeatured-bg-gradient-grid.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\apps-hover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-aboutbox.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ask_search_215wide.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-pnl520x390.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-btnover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ask_search_212wide.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-sml.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-sml-drop.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrowr-bluew5.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-up.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\transparent.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-mdl.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-middle.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-on-l.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-off-r.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-on-r.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\TRUSTe_about.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\scripts\defscript.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-right-resize.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-mdl.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\panel-botm-noscroll.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\box-check.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\options-weather.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\over-orange.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\over-blue.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-check.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\icons.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\cond999.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na-t.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na-s.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\throbber.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\proxy.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\templateFF.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\add.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\weather.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\popupWeather.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\popupWeather.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png
  • %TEMP%\trackid.dat
  • %APPDATA%\imeshlphantmusictoolbar\apnuserid.dat
  • %TEMP%\appid.dat
  • %APPDATA%\imeshlphantmusictoolbar\trackid.dat
  • %TEMP%\apnuserid.dat
  • %TEMP%\nsi24.tmp\ioSpecial.ini
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\as_guid.dat
  • %APPDATA%\imeshlphantmusictoolbar\setupCfg.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\install.ico
  • %TEMP%\nsi24.tmp\inetc.dll
  • %APPDATA%\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004
  • %TEMP%\nsi24.tmp\AccessControl.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\uninstall.exe
  • %APPDATA%\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004
  • %TEMP%\sysid.dat
  • %APPDATA%\imeshlphantmusictoolbar\appid.dat
  • %TEMP%\DTX\Reporting\ReportingHelper.dll
  • %APPDATA%\imeshlphantmusictoolbar\sysid.dat
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-search.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-main.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-weather.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-weather.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png
  • %TEMP%\nsi24.tmp\nsProcess.dll
  • %APPDATA%\imeshlphantmusictoolbar\dtx.ini
  • %TEMP%\nsi24.tmp\nsisFirewall.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe
  • %APPDATA%\imeshlphantmusictoolbar\guid.dat
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-widgets.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-middle.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-middle.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\topbar-inside-gradient.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\thumb-up.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_blank.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_x_orange.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_x_grey.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets-square-24px.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-bottomglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-bottom-middleglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets-square-16px.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-detailed-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-detailed-on.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-thumb-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-thumb-on.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-down.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-disable.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-down.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-bg.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-bg-206.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-disable.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-topwin.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchtheweb.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchboxlite_end.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\sprite-dropdown.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\shadow-leftmenu.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchboxlite.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchbox.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchbox-pnlbtm.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-middleglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_15.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_14.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_18.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_16.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_13.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_10.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_09.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_12.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_11.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\close-normal.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\close-hot.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\paneltemplate.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\loadingMid.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\btn-close-greyover.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_20.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_19.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\btn-close-grey.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_21.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\default.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.tinyscrollbar.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.qtip.min.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-top-middleglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-bottomglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-topglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-topglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-middleglow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_06.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_04.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_08.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_07.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_03.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.uniform.min.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.tinyscrollbar.min.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_02.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.url.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconFF.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconPressedFF.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconPressed.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\modules\nsDragAndDrop.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsswin.xsl
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsswin.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\modules\datastore.jsm
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\wmpstreamer.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\splash_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\thumbs\tb_thumb_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\tb_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\tb_icon.ico
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_pref_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.jsww
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.jsw
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\about.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\vmnrsswin.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpanel.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\custom.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\vmncode.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\template.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\preferences.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\toolbar.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\toolbar.htm
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\external.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\emailnotifierproviders.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsspreview.html
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\neterror.xhtml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxwin.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpanelwin.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpaneltransparent.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxtransparentwin.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxprefwin.xul
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\widget.jsw
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-settings.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-settings-over.png
  • %TEMP%\nsc27.tmp\System.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-widgets-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-search.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\break.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\bluesky.gif
  • %TEMP%\nsw26.tmp
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-search-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\divider.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\dailymotion.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\facebook.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ebay.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\custom.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_ask_search.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-widgets.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_settings_17padding_18pxheight.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_settings.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\de.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\lib\en.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\es.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\en.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\locale.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\search\engines.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\widget.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\weather\icons.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\search\search.xsl
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ask_logo_24x20.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ask_logo_18x14.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\bluelite.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\blip.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\TRUSTe_about.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\it.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\fr.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\Lyrics.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\Koyotesoft_Icon_16x16.png
  • %TEMP%\1A.tmp
  • %TEMP%\19.tmp
  • %TEMP%\1C.tmp
  • %TEMP%\1B.tmp
  • %TEMP%\18.tmp
  • %TEMP%\15.tmp
  • %TEMP%\14.tmp
  • %TEMP%\17.tmp
  • %TEMP%\16.tmp
  • %PROGRAM_FILES%\Music App\Datamngr\favicon.ico
  • %TEMP%\nst4\nsa8.tmp\pack.exe
  • %PROGRAM_FILES%\Music App\Datamngr\x64\setmgrc2.cfg
  • %PROGRAM_FILES%\Music App\Datamngr\setmgrc2.cfg
  • %TEMP%\21.tmp
  • %TEMP%\1E.tmp
  • %TEMP%\1D.tmp
  • %TEMP%\20.tmp
  • %TEMP%\1F.tmp
  • %TEMP%\nst4.tmp\registry.dll
  • %TEMP%\nst4\Starter.exe
  • %TEMP%\A.tmp
  • %TEMP%\9.tmp
  • %TEMP%\nst4\CHAppConfirm.exe
  • %TEMP%\nst4.tmp\System.dll
  • %TEMP%\nse2.tmp
  • %TEMP%\nst4\Helper.dll
  • %TEMP%\nst4.tmp\UserInfo.dll
  • %TEMP%\11.tmp
  • %TEMP%\10.tmp
  • %TEMP%\13.tmp
  • %TEMP%\12.tmp
  • %TEMP%\F.tmp
  • %TEMP%\C.tmp
  • %TEMP%\B.tmp
  • %TEMP%\E.tmp
  • %TEMP%\D.tmp
  • %PROGRAM_FILES%\Music App\Datamngr\DatamngrCoordinator.exe
  • %TEMP%\nsi24.tmp\xml.dll
  • %TEMP%\nsi24.tmp\ocode.xml
  • %TEMP%\nsi24.tmp\InetLoad.dll
  • %TEMP%\imeshlphantmusictoolbar-manifest.xml
  • %TEMP%\nsi24.tmp\toolbar.xml
  • %TEMP%\nss23.tmp
  • %TEMP%\nst4\nsa8.tmp\LphantMediaBar.exe
  • %TEMP%\nsi24.tmp\UAC.dll
  • %TEMP%\nsi24.tmp\System.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\custom.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\components\windowmediator.js
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\partner.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\neterror.xhtml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\searchresultsDx.dll
  • %TEMP%\{32cf5a7d-f785-42ee-b97f-4c53ea70e6ed}\geodata.xml
  • %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\geolocation[1]
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\searchresultstb.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\manifest.xml
  • %PROGRAM_FILES%\Music App\Datamngr\x64\apcrtldr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\apcrtldr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\apcrtldr36.dll
  • %PROGRAM_FILES%\Music App\Datamngr\apcrtldr36.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\Internet Explorer Settings.exe
  • %PROGRAM_FILES%\Music App\Datamngr\Internet Explorer Settings Update.exe
  • %PROGRAM_FILES%\Music App\Datamngr\DatamngrUI.exe
  • %PROGRAM_FILES%\Music App\Datamngr\Internet Explorer Settings.exe
  • %PROGRAM_FILES%\Music App\Datamngr\x64\Internet Explorer Settings Update.exe
  • %PROGRAM_FILES%\Music App\Datamngr\mgrldr_u.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\mgrldr.dll
  • %TEMP%\nst4\nsa8.tmp\mediabar.exe
  • %PROGRAM_FILES%\Music App\Datamngr\x64\mgrldr_u.dll
  • %PROGRAM_FILES%\Music App\Datamngr\mgrldr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\Datamngr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\Datamngr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\IEBHO.dll
  • %PROGRAM_FILES%\Music App\Datamngr\IEBHO.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\find-videos.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_yellow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_magenta.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\imap.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\hotmail.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_lime.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\gmail.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_cyan.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_blue.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_bg-basic.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\mailcom.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_separator_white.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_separator_bar.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\logo-separator.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\launchers.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\lastsearch-thumb-back.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\lock.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\loadingMid.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter-down-vista.png
  • %TEMP%\nse2A.tmp\System.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnright-vista.png
  • %TEMP%\nsj29.tmp
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnleft-down-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnright-down-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnleft-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\edit-back.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\edit-back-hot.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\found.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\expand.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\dtx.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\chevron.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\checkmark.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\dtx-test.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\collapse.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitem-splitter.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rename.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\remove.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rss.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\resize-box.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\reload.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\plus.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel_ff.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\radio.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\pop.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\search.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\search-go.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\text-ellipsis.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\separator.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\scroll-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rsstabdivider.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rsschannelback.png
  • %PROGRAM_FILES%\Music App\Datamngr\Helper.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\scroll-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft.png
  • %TEMP%\nse2A.tmp\toolbar.xml
  • %TEMP%\nse2A.tmp\xml.dll
  • %TEMP%\nse2A.tmp\ocode.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft-vista.png
  • %TEMP%\nse2A.tmp\UAC.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemback-down-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft-down-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemback-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-left.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\movetarget.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-right.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-middle.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\move.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemright-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemright-down-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\modify.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\minus.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-bluelite.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings_stb_19x_over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-bluesky.png
  • %TEMP%\nsc27.tmp\UAC.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings_stb_19x.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchtheweb.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\search_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\setting_stb_16x.png
  • %TEMP%\nsc27.tmp\xml.dll
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-yellow.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\sv.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin.xml
  • %TEMP%\nsc27.tmp\ocode.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-lichen.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-grey.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-orange.png
  • %TEMP%\nsc27.tmp\toolbar.xml
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-separator.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\menuseparatorback.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-about.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\icon_games.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\grey.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lichen.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\images.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\orange.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options-search.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\search-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\radiobeta-stopped.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\music_logo.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modify-save.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\metacafe.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modifyhot.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modify.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\tb_icon.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-start.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-mdl_ff.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-end.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-divider.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-mdl.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-up.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-right.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-end.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-divider.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn_slider.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn-widgets.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnback-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnback-down-vista.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn-widgets-over.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-mdl_ff.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-mdl.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\blank.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-start.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\vimeo.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\video.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\web.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\vmn.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\veoh.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\toolbarsplitter.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\throbber.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\twitter.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\tv.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\aol.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\alexabutton.css
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-right-disabled.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-dn.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\add.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\yellow.gif
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\websearch.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\RSSLogo.png
  • %PROGRAM_FILES%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\youtube.png
Удаляет следующие файлы:
  • %TEMP%\nsc27.tmp\xml.dll
  • %TEMP%\nse2A.tmp\ocode.xml
  • %TEMP%\nsc27.tmp\toolbar.xml
  • %TEMP%\nsc27.tmp\UAC.dll
  • %TEMP%\nse2A.tmp\UAC.dll
  • %TEMP%\nse2A.tmp\xml.dll
  • %TEMP%\nse2A.tmp\System.dll
  • %TEMP%\nse2A.tmp\toolbar.xml
  • %PROGRAM_FILES%\Music App\Datamngr\apcrtldr36.dll
  • %PROGRAM_FILES%\Music App\Datamngr\Internet Explorer Settings Update.exe
  • %PROGRAM_FILES%\Music App\Datamngr\x64\mgrldr_u.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\setmgrc2.cfg
  • %TEMP%\nsc27.tmp\ocode.xml
  • %TEMP%\nsc27.tmp\System.dll
  • %PROGRAM_FILES%\Music App\Datamngr\mgrldr_u.dll
  • %TEMP%\{32cf5a7d-f785-42ee-b97f-4c53ea70e6ed}\geodata.xml
  • %TEMP%\nsi24.tmp\nsProcess.dll
  • %TEMP%\nsi24.tmp\ocode.xml
  • %TEMP%\nsi24.tmp\ioSpecial.ini
  • %TEMP%\nsi24.tmp\nsisFirewall.dll
  • %TEMP%\nsi24.tmp\UAC.dll
  • %TEMP%\nsi24.tmp\xml.dll
  • %TEMP%\nsi24.tmp\System.dll
  • %TEMP%\nsi24.tmp\toolbar.xml
  • %TEMP%\nst4.tmp\registry.dll
  • %TEMP%\nst4.tmp\System.dll
  • %ALLUSERSPROFILE%\Application Data\Datamngr\coordinator.cfg.bak
  • %ALLUSERSPROFILE%\Application Data\Datamngr\S-1-5-21-2052111302-484763869-725345543-1003.cfg.bak
  • %TEMP%\nsi24.tmp\inetc.dll
  • %TEMP%\nsi24.tmp\InetLoad.dll
  • %TEMP%\nst4.tmp\UserInfo.dll
  • %TEMP%\nsi24.tmp\AccessControl.dll
  • %TEMP%\13.tmp
  • %TEMP%\14.tmp
  • %TEMP%\11.tmp
  • %TEMP%\12.tmp
  • %TEMP%\17.tmp
  • %TEMP%\18.tmp
  • %TEMP%\15.tmp
  • %TEMP%\16.tmp
  • %TEMP%\B.tmp
  • %TEMP%\C.tmp
  • %TEMP%\9.tmp
  • %TEMP%\A.tmp
  • %TEMP%\F.tmp
  • %TEMP%\10.tmp
  • %TEMP%\D.tmp
  • %TEMP%\E.tmp
  • %PROGRAM_FILES%\Music App\Datamngr\x64\apcrtldr36.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\Datamngr.dll
  • %TEMP%\21.tmp
  • %PROGRAM_FILES%\Music App\Datamngr\x64\apcrtldr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\Internet Explorer Settings.exe
  • %PROGRAM_FILES%\Music App\Datamngr\x64\mgrldr.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\IEBHO.dll
  • %PROGRAM_FILES%\Music App\Datamngr\x64\Internet Explorer Settings Update.exe
  • %TEMP%\1B.tmp
  • %TEMP%\1C.tmp
  • %TEMP%\19.tmp
  • %TEMP%\1A.tmp
  • %TEMP%\1F.tmp
  • %TEMP%\20.tmp
  • %TEMP%\1D.tmp
  • %TEMP%\1E.tmp
Перемещает следующие файлы:
  • %ALLUSERSPROFILE%\Application Data\Datamngr\S-1-5-21-2052111302-484763869-725345543-1003.cfg в %ALLUSERSPROFILE%\Application Data\Datamngr\S-1-5-21-2052111302-484763869-725345543-1003.cfg.bak
  • %ALLUSERSPROFILE%\Application Data\Datamngr\coordinator.cfg в %ALLUSERSPROFILE%\Application Data\Datamngr\coordinator.cfg.bak
Сетевая активность:
Подключается к:
  • 'se#####.bandoobe.com':80
  • 'www.download.windowsupdate.com':80
  • 'we####rch.ask.com':80
  • 'pr####.bandoobe.com':80
TCP:
Запросы HTTP GET:
  • www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt
  • we####rch.ask.com/geolocation
Запросы HTTP POST:
  • se#####.bandoobe.com/install_statistics.php
  • pr####.bandoobe.com/login
UDP:
  • DNS ASK www.download.windowsupdate.com
  • DNS ASK an#.###analytics.com
  • DNS ASK se#####.bandoobe.com
  • DNS ASK we####rch.ask.com
  • DNS ASK pr####.bandoobe.com
Другое:
Ищет следующие окна:
  • ClassName: 'CSCHiddenWindow' WindowName: '(null)'
  • ClassName: 'SystemTray_Main' WindowName: '(null)'
  • ClassName: '' WindowName: ''
  • ClassName: '(null)' WindowName: '(null)'
  • ClassName: 'OleMainThreadWndClass' WindowName: '(null)'
  • ClassName: 'Proxy Desktop' WindowName: '(null)'
  • ClassName: 'Shell_TrayWnd' WindowName: '(null)'
  • ClassName: 'SysListView32' WindowName: '(null)'
  • ClassName: 'BaseBar' WindowName: 'ChanApp'

Рекомендации по лечению

  1. В случае если операционная система способна загрузиться (в штатном режиме или режиме защиты от сбоев), скачайте лечащую утилиту Dr.Web CureIt! и выполните с ее помощью полную проверку вашего компьютера, а также используемых вами переносных носителей информации.
  2. Если загрузка операционной системы невозможна, измените настройки BIOS вашего компьютера, чтобы обеспечить возможность загрузки ПК с компакт-диска или USB-накопителя. Скачайте образ аварийного диска восстановления системы Dr.Web® LiveDisk или утилиту записи Dr.Web® LiveDisk на USB-накопитель, подготовьте соответствующий носитель. Загрузив компьютер с использованием данного носителя, выполните его полную проверку и лечение обнаруженных угроз.
Скачать Dr.Web

По серийному номеру

Выполните полную проверку системы с использованием Антивируса Dr.Web Light для macOS. Данный продукт можно загрузить с официального сайта Apple App Store.

На загруженной ОС выполните полную проверку всех дисковых разделов с использованием продукта Антивирус Dr.Web для Linux.

Скачать Dr.Web

По серийному номеру

  1. Если мобильное устройство функционирует в штатном режиме, загрузите и установите на него бесплатный антивирусный продукт Dr.Web для Android Light. Выполните полную проверку системы и используйте рекомендации по нейтрализации обнаруженных угроз.
  2. Если мобильное устройство заблокировано троянцем-вымогателем семейства Android.Locker (на экране отображается обвинение в нарушении закона, требование выплаты определенной денежной суммы или иное сообщение, мешающее нормальной работе с устройством), выполните следующие действия:
    • загрузите свой смартфон или планшет в безопасном режиме (в зависимости от версии операционной системы и особенностей конкретного мобильного устройства эта процедура может быть выполнена различными способами; обратитесь за уточнением к инструкции, поставляемой вместе с приобретенным аппаратом, или напрямую к его производителю);
    • после активации безопасного режима установите на зараженное устройство бесплатный антивирусный продукт Dr.Web для Android Light и произведите полную проверку системы, выполнив рекомендации по нейтрализации обнаруженных угроз;
    • выключите устройство и включите его в обычном режиме.

Подробнее о Dr.Web для Android

Демо бесплатно на 14 дней

Выдаётся при установке