Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Control\Session Manager\SubSystems] 'Windows' = '<SYSTEM32>\csrss.exe ObjectDirectory=\Windows SharedSection=1024,12288,1024 Windows=On SubSystemType=Windows Server...
- <SYSTEM32>\cmd.exe
- iexplore.exe
- %TEMP%\aut1.tmp
- %ProgramFiles%\Chameleon Task Manager\is-L2KAV.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-IPQFO.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-8OF2C.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-NJLEO.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-A74UF.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-G06NF.tmp
- %ProgramFiles%\Chameleon Task Manager\is-DP1C7.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-FSFET.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-BCKLJ.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-HDQ9F.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-KN60N.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-IR2FJ.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-Q4FKK.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-GFSD3.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-QJ9JE.tmp
- %HOMEPATH%\My Documents\Chameleon files\Log\task.log
- %TEMP%\dw.log
- %ProgramFiles%\Chameleon Task Manager\is-843QR.tmp
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_backup
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll.task
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_backup
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll.task
- %CommonProgramFiles%\Chameleon Manager\monitor.exe.task
- %CommonProgramFiles%\Chameleon Manager\proc64.exe.task
- %CommonProgramFiles%\Chameleon Manager\Language\is-Q0C61.tmp
- %HOMEPATH%\My Documents\Chameleon files\Log\task_error.log
- %ProgramFiles%\Chameleon Task Manager\unins000.dat
- %ProgramFiles%\Chameleon Task Manager\unins000.msg
- %ALLUSERSPROFILE%\Start Menu\Programs\Chameleon Task Manager\Registration online.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Chameleon Task Manager\Chameleon Task Manager on the Web.lnk
- %ALLUSERSPROFILE%\Desktop\Chameleon Task Manager.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Chameleon Task Manager\Chameleon Task Manager.lnk
- %ProgramFiles%\Chameleon Task Manager\is-4U5GR.tmp
- %ProgramFiles%\Chameleon Task Manager\is-87GV4.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-AVGCF.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-861SH.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-JNIQH.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-C7I1S.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-82TLP.tmp
- %CommonProgramFiles%\Chameleon Manager\is-KCU6D.tmp
- %CommonProgramFiles%\Chameleon Manager\is-VS2NP.tmp
- %CommonProgramFiles%\Chameleon Manager\is-62KRH.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-I8533.tmp
- %CommonProgramFiles%\Chameleon Manager\is-G0G2N.tmp
- %ProgramFiles%\Chameleon Task Manager\is-967EV.tmp
- %TEMP%\is-9QEGO.tmp\background.bmp
- %TEMP%\is-OTN1F.tmp\1.tmp
- %TEMP%\2.exe
- %TEMP%\aut2.tmp
- %TEMP%\1.exe
- %ProgramFiles%\Chameleon Task Manager\is-LCBR7.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-E5BLS.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-TVGTH.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-0PQIT.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-3U7H4.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-C0P79.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-HG5FC.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-COIA1.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-G9RO7.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-6I2HA.tmp
- %CommonProgramFiles%\Chameleon Manager\Language\is-TFH3Q.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-F5C7I.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-I4SLJ.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-FTRFP.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-4UQ0L.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-UFIO9.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-TG07F.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-LN6RV.tmp
- %ProgramFiles%\Chameleon Task Manager\Language\is-NIGG4.tmp
- %TEMP%\3C3AF.dmp
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- %CommonProgramFiles%\Chameleon Manager\proc64.exe_new
- %CommonProgramFiles%\Chameleon Manager\monitor.exe_new
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_new
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_new
- from %ProgramFiles%\Chameleon Task Manager\is-967EV.tmp to %ProgramFiles%\Chameleon Task Manager\unins000.exe
- from %CommonProgramFiles%\Chameleon Manager\Language\is-3U7H4.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Croatian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-TVGTH.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Czech.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-TFH3Q.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Dutch.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-AVGCF.tmp to %CommonProgramFiles%\Chameleon Manager\Language\english.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-Q0C61.tmp to %CommonProgramFiles%\Chameleon Manager\Language\French.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-GFSD3.tmp to %CommonProgramFiles%\Chameleon Manager\Language\FrenchNew.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-Q4FKK.tmp to %CommonProgramFiles%\Chameleon Manager\Language\German.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-IR2FJ.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Hindi.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-KN60N.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Hungarian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-HDQ9F.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Italian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-BCKLJ.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Polish.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-QJ9JE.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Portuguese-br.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-FSFET.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Russian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-G06NF.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Serbian.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-A74UF.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Slovak.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-NJLEO.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Spanish.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-8OF2C.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Turkish.lng
- from %CommonProgramFiles%\Chameleon Manager\Language\is-IPQFO.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Ukrainian.lng
- from %ProgramFiles%\Chameleon Task Manager\is-L2KAV.tmp to %ProgramFiles%\Chameleon Task Manager\home.url
- from %ProgramFiles%\Chameleon Task Manager\is-DP1C7.tmp to %ProgramFiles%\Chameleon Task Manager\license.txt
- from %ProgramFiles%\Chameleon Task Manager\is-4U5GR.tmp to %ProgramFiles%\Chameleon Task Manager\register.url
- from %CommonProgramFiles%\Chameleon Manager\Language\is-C0P79.tmp to %CommonProgramFiles%\Chameleon Manager\Language\Chinese.lng
- from %ProgramFiles%\Chameleon Task Manager\is-87GV4.tmp to %ProgramFiles%\Chameleon Task Manager\readme.txt
- from %ProgramFiles%\Chameleon Task Manager\Language\is-HG5FC.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Ukrainian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-G9RO7.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Spanish.lng
- from %ProgramFiles%\Chameleon Task Manager\is-LCBR7.tmp to %ProgramFiles%\Chameleon Task Manager\manager_task.exe
- from %CommonProgramFiles%\Chameleon Manager\is-G0G2N.tmp to %CommonProgramFiles%\Chameleon Manager\monitor.exe_new
- from %CommonProgramFiles%\Chameleon Manager\is-62KRH.tmp to %CommonProgramFiles%\Chameleon Manager\proc64.exe_new
- from %CommonProgramFiles%\Chameleon Manager\is-VS2NP.tmp to %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_new
- from %CommonProgramFiles%\Chameleon Manager\is-KCU6D.tmp to %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_new
- from %ProgramFiles%\Chameleon Task Manager\Language\is-82TLP.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Chinese.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-C7I1S.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Croatian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-JNIQH.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Czech.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-I8533.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Dutch.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-NIGG4.tmp to %ProgramFiles%\Chameleon Task Manager\Language\english.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-861SH.tmp to %ProgramFiles%\Chameleon Task Manager\Language\French.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-0PQIT.tmp to %ProgramFiles%\Chameleon Task Manager\Language\FrenchNew.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-LN6RV.tmp to %ProgramFiles%\Chameleon Task Manager\Language\German.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-TG07F.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Hindi.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-UFIO9.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Hungarian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-4UQ0L.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Italian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-FTRFP.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Polish.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-I4SLJ.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Portuguese-br.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-E5BLS.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Russian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-F5C7I.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Serbian.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-6I2HA.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Slovak.lng
- from %ProgramFiles%\Chameleon Task Manager\Language\is-COIA1.tmp to %ProgramFiles%\Chameleon Task Manager\Language\Turkish.lng
- from %ProgramFiles%\Chameleon Task Manager\is-843QR.tmp to %ProgramFiles%\Chameleon Task Manager\task.chm
- %CommonProgramFiles%\Chameleon Manager\proc64.exe_new
- %CommonProgramFiles%\Chameleon Manager\monitor.exe_new
- %CommonProgramFiles%\Chameleon Manager\cham_ex32.dll_new
- %CommonProgramFiles%\Chameleon Manager\cham_ex64.dll_new
- 'ch#####on-managers.com':80
- 'ip###ger.com':443
- 'ch########managers-hdr.appspot.com':443
- http://www.ch#####on-managers.com/static/?ca###################################################### via ch#####on-managers.com
- DNS ASK www.ch#####on-managers.com
- DNS ASK ip###ger.com
- DNS ASK ch########managers-hdr.appspot.com
- ClassName: 'CSM x64 extension' WindowName: ''
- '%TEMP%\1.exe' /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '%TEMP%\2.exe'
- '%TEMP%\is-OTN1F.tmp\1.tmp' /SL5="$100E6,3806021,121344,%TEMP%\1.exe" /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '%ProgramFiles%\Chameleon Task Manager\manager_task.exe' /trialregister
- '%ProgramFiles%\Chameleon Task Manager\manager_task.exe' /update
- '<SYSTEM32>\cmd.exe' /c %TEMP%\1.exe /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '<SYSTEM32>\cmd.exe' /c %TEMP%\2.exe
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 1380