PUA.WIN32.SEARCHSUITE.AA
BrowserModifier:Win32/KipodToolsCby (MICROSOFT)
Windows
Threat Type: Potentially Unwanted Application
Destructiveness: No
Encrypted: No
In the wild: Yes
OVERVIEW
This Potentially Unwanted Application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It may be manually installed by a user.
It modifies the user's Internet Explorer home page into a certain website. This action allows the malware to point to a website which may contain malware, putting the affected computer at greater risk of malware infection.
It connects to certain websites to send and receive information. It gathers information and reports it to its servers.
TECHNICAL DETAILS
Arrival Details
This Potentially Unwanted Application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
It may be manually installed by a user.
Installation
This Potentially Unwanted Application drops the following files:
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\manifest.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\searchresultstb.dll
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\searchresultsDx.dll
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\custom.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\neterror.xhtml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\partner.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\preferences.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\template.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\toolbar.htm
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\toolbar.xul
- %Program Files%\Music App\Datamngr\MusicAppHelper.dll
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\vmncode.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\vmnrsswin.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\about.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\custom.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\GC\install.ico
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpanel.xul
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpaneltransparent.xul
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpanelwin.xul
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxprefwin.xul
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxtransparentwin.xul
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxwin.xul
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\emailnotifierproviders.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\external.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\GC\uninstall.exe
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\neterror.xhtml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsspreview.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsswin.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsswin.xsl
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\wmpstreamer.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\modules\datastore.jsm
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\modules\nsDragAndDrop.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconFF.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconPressed.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconPressedFF.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_pref_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.jsw
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.jsww
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\thumbs\tb_thumb_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\splash_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\tb_icon.ico
- %Program Files%\Music App\Datamngr\Uninstall.exe
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\tb_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\widget.jsw
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\widget.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\search\engines.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\search\search.xsl
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\weather\icons.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\locale.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\lib\en.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\de.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\en.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\es.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\fr.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\it.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\Koyotesoft_Icon_16x16.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\Lyrics.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\TRUSTe_about.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ask_logo_18x14.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ask_logo_24x20.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\blip.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\bluelite.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\bluesky.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\break.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-search-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-search.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-settings-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-settings.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-widgets-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-widgets.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_ask_search.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_settings.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_settings_17padding_18pxheight.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\custom.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\dailymotion.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\divider.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ebay.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\facebook.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\find-videos.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\grey.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\icon_games.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\images.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lichen.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-about.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-separator.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\menuseparatorback.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\metacafe.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modify-save.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modify.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modifyhot.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\music_logo.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options-search.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\orange.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\radiobeta-stopped.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\search-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\search_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchtheweb.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\setting_stb_16x.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings_stb_19x.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings_stb_19x_over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-bluelite.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-bluesky.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-grey.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-lichen.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-orange.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-yellow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\sv.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\tb_icon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\throbber.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\toolbarsplitter.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\tv.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\twitter.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\veoh.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\video.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\vimeo.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\vmn.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\web.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\websearch.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\yellow.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\youtube.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\RSSLogo.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\add.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\alexabutton.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\aol.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-dn.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-right-disabled.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-right.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-up.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-divider.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-end.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-mdl.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-mdl_ff.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-start.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-divider.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-end.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-mdl.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-mdl_ff.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-start.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\blank.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn-widgets-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn-widgets.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn_slider.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnback-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnback-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnleft-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnleft-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnright-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnright-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\checkmark.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\chevron.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\collapse.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\dtx-test.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\dtx.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\edit-back-hot.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\edit-back.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\expand.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\found.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\gmail.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_blue.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_cyan.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_lime.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_magenta.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_yellow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\hotmail.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\imap.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\lastsearch-thumb-back.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\launchers.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\loadingMid.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\lock.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\logo-separator.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\mailcom.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_bg-basic.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_separator_bar.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_separator_white.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitem-splitter.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemback-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemback-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemright-down-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemright-vista.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\minus.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\modify.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\move.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\movetarget.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-middle.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel_ff.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\plus.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\pop.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\radio.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\reload.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\remove.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rename.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\resize-box.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rss.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rsschannelback.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rsstabdivider.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\scroll-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\scroll-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\search-go.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\search.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\separator.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\text-ellipsis.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\throbber.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\toolbarsplitter.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\transparent_1px.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\yahoo.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\debugbar\debug.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\footer.htm
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gameData.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gameList.xsl
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gamecategory.xsl
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gametype.xsl
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\initHTML.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupGames.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupHTML.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupWidgets.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\scroll.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\ie-only.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\ie7-only.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\jquery.qtip.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\panels.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupAbout.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupGames.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupWidgets.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\main.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\main.html.bak
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\css\dialog.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\bg.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-close-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-close.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-search.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-wide-close-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-wide-close.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\default.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-middle.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-off-l.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-off-r.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-on-l.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-on-r.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-middle.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\transparent.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-mdl.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-mdl.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-right-resize.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\scripts\defscript.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\scripts\defscript.js.bak
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\TRUSTe_about.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ajax-loader.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\apps-bg-gradient-grid.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\apps-hover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\appsfeatured-bg-gradient-grid.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-dn.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-down-white.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-sml-drop.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-sml.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-up.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrowr-bluew5.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ask_search_212wide.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ask_search_215wide.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-aboutbox.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-btnover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-pnl520x390.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-thumb-y.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-track-y.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-trackend-y.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-add-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-add.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-left-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-back.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-grey-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-grey.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-greyover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-left22-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-left22.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-middle22-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-middle22.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-right22-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-right22.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-drag.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-install.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-launch-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-launch.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-mdl-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-mdl.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-moredetails.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-next-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-next.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-play-left-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-play-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-previous-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-previous.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-right-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-search-pnlbtm.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-try-left-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-try-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bullet-orange.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\categories-bg-gradient-grid.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\dislike.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\dislike_over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\featured-bg-btm-gradient.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-middle.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\gamethumb-on.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\gamethumb2-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-box-next.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-calendar.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-dollar.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-download.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-info-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-info.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-joystick24.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-news24.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-play.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-pref-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-pref.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-tags.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-user-monitor.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-Add.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-Info.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-download.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-play.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-shop.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\left-menu-hover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\like.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\like_over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\menul-bgon.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\menul-bgover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\panel-botm-noscroll.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-bg-206.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-bg.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-topwin.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-disable.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-down.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-disable.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-down.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchbox-pnlbtm.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchbox.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchboxlite.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchboxlite_end.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchtheweb.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\shadow-leftmenu.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\sprite-dropdown.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_blank.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_x_grey.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_x_orange.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\thumb-up.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-middle.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\topbar-inside-gradient.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-detailed-on.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-detailed-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-thumb-on.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-thumb-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets-square-16px.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets-square-24px.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-bottom-middleglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-bottomglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-middleglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-topglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-bottomglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-middleglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-topglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-top-middleglow.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\default.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.qtip.min.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.tinyscrollbar.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.tinyscrollbar.min.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.uniform.min.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.url.js
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_02.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_03.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_04.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_06.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_07.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_08.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_09.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_10.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_11.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_12.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_13.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_14.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_15.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_16.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_18.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_19.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_20.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_21.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\btn-close-grey.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\btn-close-greyover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\close-hot.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\close-normal.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\loadingMid.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\paneltemplate.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\proxy.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.html.bak
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\templateFF.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\throbber.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\cond999.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\icons.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na-s.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na-t.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\weather.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\popupWeather.css
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\popupWeather.html
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\add.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\box-check.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm-over.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-check.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\options-weather.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\over-blue.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\over-orange.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-main.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-search.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-weather.gif
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-weather.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-widgets.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-left.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-middle.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-right.png
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\manifest.xml
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\as_guid.dat
- %Program Files%\Music App\Datamngr\SRTOOL~1\IE\install.ico
- %Program Files%\jZip\license.rtf
- %Program Files%\jZip\Archive created by free jZip.url
- %Program Files%\jZip\change.exe
- %Program Files%\jZip\jZip.exe
- %Program Files%\jZip\7z.dll
- %Program Files%\jZip\CoreArchiver.dll
- %Program Files%\jZip\InstallHelper.dll
- %Program Files%\jZip\jZipShell.dll
- %Program Files%\jZip\jZipShell64x.dll
- %Program Files%\jZip\ResourcesLOC.dll
- %Program Files%\jZip\Uninstall.exe
- %Program Files%\jZip\Helper.dll
- %Program Files%\jZip\tgames.ico
- %Program Files%\jZip\log.log
Other System Modifications
This Potentially Unwanted Application adds the following registry entries as part of its installation routine:
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
pver = "5.0.0.16274"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr
Version = "5.0.0.16274"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
appid = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
home = "%Program Files%\Music App"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ln = "en"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
sysid = "{System ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
osver = "{OS Version}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
nativemsgpath = "%AppDataLocal%"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
Publisher = "IAC Search and Media, Inc."
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
DisplayVersion = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
DisplayIcon = "%Program Files%\Music App\Datamngr\SRTOOL~1\GC\install.ico"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
DisplayName = "Music Search App for Chrome"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
InstallLocation = "%Program Files%\Music App\Datamngr\SRTOOL~1\GC"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
UninstallString = "%Program Files%\Music App\Datamngr\SRTOOL~1\GC\uninstall.exe /UN=CR /PID=JZP2-DTX /PCD=IMH /OCODE=APN10646"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
NoModify = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
NoRepair = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
EstimatedSize = "0"
HKEY_CURRENT_USER\Software\Microsoft\
Internet Explorer\Main
Start Page = "http://www.{BLOCKED}h.{BLOCKED}k.com/?o=APN10646A&gct=hp&d=102-0&v=n16274-2050&t=4"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
Class ID = "{CLSID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
trgb = "CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
IMH-LPD
lastinstalled = "JZP2-DTX"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
IMH-LPD
lastinstalled-CR = "JZP2-DTX"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
browsers = "1-CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
lastinstalled = "CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
o = "APN10646"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
dbr = "CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
trgb = "CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
Browsers = "1-CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
anxv = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
anxtv = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
p2 = "^AG7^BND102^YY^PH"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
guid = "{GUID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
tbsinstalled = ""
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
d = "102-0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
v = "n16274-2050"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
t = "4"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
CRXS\aaaaaikjhckghnoaaaehhmgjcfajoabi
Partner ID = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
CRXS
Last Installed IMH = "JZP2-DTX"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
hp_o = "APN10646A"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
appid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
sysid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
hp = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
ds = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=CR&psv=&o=APN10646&gct=ds&q={searchTerms}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
nt = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&d=&v=&t=&gct=tab"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
sb = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=CR&psv=&o=APN10646&gct=sb&q={searchTerms}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
doi = "{Current Date}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
timeofinstall = "{Current Time}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
locale = "en_PH"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
apn_ptnrs = "^AG7"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
apn_dtid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
CountryCode = "{Country Code}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
trackid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
apn_uid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
Version = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
nthp_cr = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
hpr_cr = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
test = "override"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
testa = "override extra"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
testb = "testing"
HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
CheckInterval = "1440"
HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
Version = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
VersionCompareDigits = "3"
HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
UpdateAllSubPackageToVersion = "999.9.9.9"
HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX\
JZP2-DTX
CmdArgs = "/S /trgb=update"
HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX\
JZP2-DTX
Version = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
o = "APN10646"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
dbr = "CR"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
appid = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
sysid = "102"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
hp = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
ds = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=IE&psv=&o=APN10646&gct=ds&q={searchTerms}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
nt = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&d=&v=&t=&gct=hp"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
sb = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=IE&psv=&o=APN10646&gct=sb&q={searchTerms}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
doi = "2019-01-11"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
timeofinstall = "2019-01-11T14:59:12"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
locale = "en_PH"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
apn_ptnrs = "^AG7"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
apn_dtid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
CountryCode = "PH"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
trackid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
apn_uid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
Version = "2.9.0.0"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
nthp_cr = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
hpr_cr = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
test = "override"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
testa = "override extra"
HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
testb = "testing"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
jZip.file
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
jZip.file\DefaultIcon
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
jZip.file\shell\open\
command
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities
ApplicationDescription = "jZip Archive"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.001 = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.7z = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.arj = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.bz2 = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.cab = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.gz = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.gzip = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.iso = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.rar = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tar = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.taz = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tbz = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tgz = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tpz = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.z = "jZip.file"
HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.zip = "jZip.file"
HKEY_CURRENT_USER\Software\jZip
iver = "2.0.0.134601"
HKEY_CURRENT_USER\Software\jZip
pver = "2.0.0.135670"
HKEY_CURRENT_USER\Software\jZip
appid = "{ID}"
HKEY_CURRENT_USER\Software\jZip
home = "%Program Files%\jZip"
HKEY_CURRENT_USER\Software\jZip
ln = "en"
HKEY_CURRENT_USER\Software\jZip
sysid = "{ID}"
HKEY_CURRENT_USER\Software\jZip
clid = "{CLSID}"
HKEY_CURRENT_USER\"Software\jZip\
jZip"
defaultBrowser = "1"
HKEY_CURRENT_USER\Software\jZip
osver = "6.1"
HKEY_CURRENT_USER\Software\jZip
ostype = "win32"
HKEY_CURRENT_USER\Software\jZip
osl = "ja-JP"
HKEY_CURRENT_USER\Software\jZip
itime = "2019-01-11"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.7z
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.gz
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.iso
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.TAZ
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.tpz
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.001
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.zip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.z
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.tgz
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.arj
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.TBZ
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.tar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.RAR
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.gzip
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.BZ2
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.zip
PerceivedType = "compressed"
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.zip\jZip.file\ShellNew
Data = "{Hex Values}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ostype = "{OS Type}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
osl = "{Language}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
itime = "{Current Time}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ptype = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
kisid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
kapid = "{ID}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
uid = "{UID}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
guid = "{GUID}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
os_user_type = "{User Type}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr
browser = " {Browser Available}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr
activeBrowser = "{Active Browser}"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ie_ds_supported = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ie_hp_supported = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
chrome_ds_supported = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
chrome_hp_supported = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\aaaaaikjhckghnoaaaehhmgjcfajoabi
path = "%AppDataLocal%\imeshjzipmusictoolbar\GC\toolbar.crx"
HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\aaaaaikjhckghnoaaaehhmgjcfajoabi
version = "32.6"
HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\NativeMessagingHosts\com.apn.native_messaging_host_aaaaaikjhckghnoaaaehhmgjcfajoabi
HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\NativeMessagingHosts\com.apn.native_messaging_host_aaaaafeopjhkcolncjbedbhofpocmdbn
HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\aaaaaikjhckghnoaaaehhmgjcfajoabi
update_url = "https://{BLOCKED}s2.google.com/service/update2/crx"
Web Browser Home Page and Search Page Modification
This Potentially Unwanted Application modifies the user's Internet Explorer home page to the following websites:
- http://www.{BLOCKED}h.{BLOCKED}k.com/?o={value}&gct={value}&d={value}&v={value}&t={value}
Other Details
This Potentially Unwanted Application connects to the following website to send and receive information:
- http://{BLOCKED}x.{BLOCKED}ytics.com/tr.gif?{data}
- http://{BLOCKED}e.{BLOCKED}be.com/install_statistics.php
- http://{BLOCKED}e.{BLOCKED}p.com/install_statistics.php
- http://{BLOCKED}rch.{BLOCKED}k.com/geolocation
- http://www.{BLOCKED}p.com/post_install.php?{data}
- http://www.{BLOCKED}ivery.com/www/delivery/so/init_offer.php?{data}
It gathers the following information and reports it to its servers:
- PUA Version
- Installation Result (If success, fail, etc.)
- Default Search Engine
- OS Version and Architecture (32-bit or 64-bit)
- OS Language
- Internet Explorer Version
- Firefox Version
- Google Chrome Version
- Location/Country
NOTES:
After installation, it opens the following webpage:
http://www.{BLOCKED}p.com/post_install.php?{data}
It displays the following message to allow the user to choose their default search engine:
SOLUTION
Step 1
Before doing any scans, Windows XP, Windows Vista, and Windows 7 users must disable System Restore to allow full scanning of their computers.
Step 2
Note that not all files, folders, and registry keys and entries are installed on your computer during this malware's/spyware's/grayware's execution. This may be due to incomplete installation or other operating system conditions. If you do not find the same files/folders/registry information, please proceed to the next step.
Step 3
Identify and terminate files detected as PUA.WIN32.SEARCHSUITE.AA
- Windows Task Manager may not display all running processes. In this case, please use a third-party process viewer, preferably Process Explorer, to terminate the malware/grayware/spyware file. You may download the said tool here.
- If the detected file is displayed in either Windows Task Manager or Process Explorer but you cannot delete it, restart your computer in safe mode. To do this, refer to this link for the complete steps.
- If the detected file is not displayed in either Windows Task Manager or Process Explorer, continue doing the next steps.
Step 4
Remove PUA.WIN32.SEARCHSUITE.AA by using its own Uninstall option
Step 5
Scan your computer with your Trend Micro product to delete files detected as PUA.WIN32.SEARCHSUITE.AA. If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check the following Trend Micro Support pages for more information:
Step 6
Reset the Internet Explorer Home and Search pages
Did this description help? Tell us how we did.