Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Control\Session Manager\SubSystems] 'Windows' = '<SYSTEM32>\csrss.exe ObjectDirectory=\Windows SharedSection=1024,12288,1024 Windows=On SubSystemType=Windows Server...
- <SYSTEM32>\cmd.exe
- %CommonProgramFiles%\Chameleon Manager\Language\is-ULT35.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-QMLBD.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-ONV37.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-2G2KB.tmp
- %ProgramFiles%\Chameleon Task Manager\is-1FLRV.tmp
- %ProgramFiles%\Chameleon Task Manager\is-JG6IH.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-8IQBV.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-DOM33.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-5NGB2.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-L5T77.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-VRGJJ.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-JU3RL.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-LDLO7.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-OKIAV.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-1NGL9.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-JUVNN.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-AJQBI.tmp
- %CommonProgramFiles%\Chameleon Manager\proc64.exe.task
- %CommonProgramFiles%\Chameleon Manager\monitor.exe.task
- %HOMEPATH%\My Documents\Chameleon files\Log\task.log
- %HOMEPATH%\My Documents\Chameleon files\Log\task_error.log
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll.task
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_backup
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll.task
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_backup
- %ProgramFiles%\Chameleon Task Manager\unins000.dat
- %ProgramFiles%\Chameleon Task Manager\is-NS2IG.tmp
- %ALLUSERSPROFILE%\Start Menu\Programs\Chameleon Task Manager\Chameleon Task Manager.lnk
- %ProgramFiles%\Chameleon Task Manager\is-AOR6I.tmp
- %ProgramFiles%\Chameleon Task Manager\is-9DFR0.tmp
- %ALLUSERSPROFILE%\Start Menu\Programs\Chameleon Task Manager\Registration online.lnk
- %ProgramFiles%\Chameleon Task Manager\unins000.msg
- %ALLUSERSPROFILE%\Desktop\Chameleon Task Manager.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Chameleon Task Manager\Chameleon Task Manager on the Web.lnk
- %CommonProgramFiles%\Chameleon Manager\Language\is-SVEJD.tmp
- %CommonProgramFiles%\Chameleon Manager\is-3GPHQ.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-9PDD1.tmp
- %CommonProgramFiles%\Chameleon Manager\is-SAV81.tmp
- %CommonProgramFiles%\Chameleon Manager\is-FAREK.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-A3FB1.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-9AOI5.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-CEBD9.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-18F7S.tmp
- %CommonProgramFiles%\Chameleon Manager\is-KCV2V.tmp
- %TEMP%\aut2.tmp
- %TEMP%\update.exe
- %TEMP%\aut1.tmp
- %TEMP%\ctask.exe
- %ProgramFiles%\Chameleon Task Manager\is-ANMRJ.tmp
- %ProgramFiles%\Chameleon Task Manager\is-O767J.tmp
- %TEMP%\is-MONP0.tmp\ctask.tmp
- %TEMP%\is-IIEQE.tmp\background.bmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-JLAFG.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-L1O5M.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-HAVGA.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-UFG6A.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-SDDGE.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-VQODD.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-7SNTS.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-Q5753.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-3RHSC.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-RD6D1.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-KOIJ3.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-OFQ9U.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-F8D62.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-SFJLH.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-K0S4K.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-7TU1N.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-GF7RV.tmp
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_new
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_new
- %TEMP%\is-MONP0.tmp\ctask.tmp
- %TEMP%\is-IIEQE.tmp\background.bmp
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- %CommonProgramFiles%\Chameleon Manager\monitor.exe_new
- %CommonProgramFiles%\Chameleon Manager\proc64.exe_new
- from %CommonProgramFiles%\Chameleon Manager\Language\is-JUVNN.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Hindi.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-VRGJJ.tmp to %CommonProgramFiles%\Chameleon Manager\Language\German.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-L5T77.tmp to %CommonProgramFiles%\Chameleon Manager\Language\FrenchNew.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-1NGL9.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Polish.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-OKIAV.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Italian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-AJQBI.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Hungarian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-VQODD.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Czech.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-SDDGE.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Croatian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-Q5753.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Chinese.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-LDLO7.tmp to %CommonProgramFiles%\Chameleon Manager\Language\French.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-JU3RL.tmp to %CommonProgramFiles%\Chameleon Manager\Language\english.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-SVEJD.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Dutch.lng
- from %ProgramFiles%\Chameleon Task Manager\is-JG6IH.tmp to %ProgramFiles%\Chameleon Task Manager\license.txt
- from %ProgramFiles%\Chameleon Task Manager\is-1FLRV.tmp to %ProgramFiles%\Chameleon Task Manager\home.url
- from %CommonProgramFiles%\Chameleon Manager\Language\is-DOM33.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Ukrainian.lng
- from %ProgramFiles%\Chameleon Task Manager\is-NS2IG.tmp to %ProgramFiles%\Chameleon Task Manager\task.chm
- from %ProgramFiles%\Chameleon Task Manager\is-9DFR0.tmp to %ProgramFiles%\Chameleon Task Manager\readme.txt
- from %ProgramFiles%\Chameleon Task Manager\is-AOR6I.tmp to %ProgramFiles%\Chameleon Task Manager\register.url
- from %CommonProgramFiles%\Chameleon Manager\Language\is-2G2KB.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Serbian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-ONV37.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Russian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-5NGB2.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Portuguese-br.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-8IQBV.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Turkish.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-QMLBD.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Spanish.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-ULT35.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Slovak.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-7SNTS.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Ukrainian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-18F7S.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Czech.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-CEBD9.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Croatian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-9PDD1.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Chinese.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-OFQ9U.tmp to %ProgramFiles%\Chameleon Task Manager\Language\French.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-9AOI5.tmp to %ProgramFiles%\Chameleon Task Manager\Language\english.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-A3FB1.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Dutch.lng
- from %CommonProgramFiles%\Chameleon Manager\is-KCV2V.tmp to %CommonProgramFiles%\Chameleon Manager\monitor.exe_new
- from %ProgramFiles%\Chameleon Task Manager\is-O767J.tmp to %ProgramFiles%\Chameleon Task Manager\manager_task.exe
- from %ProgramFiles%\Chameleon Task Manager\is-ANMRJ.tmp to %ProgramFiles%\Chameleon Task Manager\unins000.exe
- from %CommonProgramFiles%\Chameleon Manager\is-3GPHQ.tmp to %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_new
- from %CommonProgramFiles%\Chameleon Manager\is-FAREK.tmp to %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_new
- from %CommonProgramFiles%\Chameleon Manager\is-SAV81.tmp to %CommonProgramFiles%\Chameleon Manager\proc64.exe_new
- from %ProgramFiles%\Chameleon Task Manager\Language\is-HAVGA.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Serbian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-3RHSC.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Russian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-K0S4K.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Portuguese-br.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-L1O5M.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Turkish.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-JLAFG.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Spanish.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-UFG6A.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Slovak.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-KOIJ3.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Hindi.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-RD6D1.tmp to %ProgramFiles%\Chameleon Task Manager\Language\German.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-F8D62.tmp to %ProgramFiles%\Chameleon Task Manager\Language\FrenchNew.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-SFJLH.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Polish.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-GF7RV.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Italian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-7TU1N.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Hungarian.lng
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_new
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_new
- %CommonProgramFiles%\Chameleon Manager\proc64.exe_new
- %CommonProgramFiles%\Chameleon Manager\monitor.exe_new
- 'ip###ger.com':443
- 'ch########managers-hdr.appspot.com':443
- 'ch#####on-managers.com':80
- http://www.ch#####on-managers.com/static/?ca###################################################### via ch#####on-managers.com
- DNS ASK ip###ger.com
- DNS ASK ch########managers-hdr.appspot.com
- DNS ASK www.ch#####on-managers.com
- ClassName: 'CSM x64 extension' WindowName: ''
- '%ProgramFiles%\Chameleon Task Manager\manager_task.exe' /trialregister
- '%ProgramFiles%\Chameleon Task Manager\manager_task.exe' /update
- '%TEMP%\update.exe'
- '%TEMP%\ctask.exe' /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '%TEMP%\is-MONP0.tmp\ctask.tmp' /SL5="$100E6,3806021,121344,%TEMP%\ctask.exe" /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '<SYSTEM32>\cmd.exe' /c %TEMP%\update.exe
- '<SYSTEM32>\cmd.exe' /c %TEMP%\ctask.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-