Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{87e944ef-1d29-481f-af7b-09c0309bd5a5}]
- %TEMP%\4f9070b6\nfjejdro0wppbx1.dat
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\guest\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\guest\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\guest\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\guest\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\guest\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- %LOCALAPPDATA%\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- %LOCALAPPDATA%\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- %LOCALAPPDATA%\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- %LOCALAPPDATA%\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %LOCALAPPDATA%\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\administrator\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\administrator\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %LOCALAPPDATA%\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- %LOCALAPPDATA%\torch\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- %LOCALAPPDATA%\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- %LOCALAPPDATA%\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- %LOCALAPPDATA%\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %LOCALAPPDATA%\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %WINDIR%\syswow64\grouppolicy\gpt.ini
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\enbqbo@euzh.edu\bootstrap.js
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\enbqbo@euzh.edu\chrome.manifest
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\enbqbo@euzh.edu\content\bg.js
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\enbqbo@euzh.edu\install.rdf
- %ProgramFiles(x86)%\gosave\3t18a5vd7ybd9z.dll
- %ProgramFiles(x86)%\gosave\3t18a5vd7ybd9z.tlb
- %ProgramFiles(x86)%\gosave\3t18a5vd7ybd9z.dat
- %ProgramFiles(x86)%\gosave\3t18a5vd7ybd9z.x64.dll
- %ALLUSERSPROFILE%\gosave\nfjejdro0wppbx1.exe
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %ALLUSERSPROFILE%\gosave\nfjejdro0wppbx1.dat
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %TEMP%\4f9070b6\3t18a5vd7ybd9z.tlb
- %TEMP%\4f9070b6\3t18a5vd7ybd9z.x64.dll
- %TEMP%\4f9070b6\enbqbo@euzh.edu\content\bg.js
- %TEMP%\4f9070b6\enbqbo@euzh.edu\bootstrap.js
- %TEMP%\4f9070b6\enbqbo@euzh.edu\chrome.manifest
- %TEMP%\4f9070b6\enbqbo@euzh.edu\install.rdf
- %TEMP%\4f9070b6\3t18a5vd7ybd9z.dll
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\hcxtp.js
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\manifest.json
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\content.js
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\lsdb.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\background.html
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- %LOCALAPPDATA%\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- %LOCALAPPDATA%\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- %LOCALAPPDATA%\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %LOCALAPPDATA%\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- %LOCALAPPDATA%\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\hcxtp.js
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\background.html
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\content.js
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\jjbilidpepclnmfccmkaldojdhnifgja\2.0\lsdb.js
- %ALLUSERSPROFILE%\770f39f23eb911d0\{c87834eb-a2a0-b9d4-aa9a-c263d1191051}.20220621224100
- %TEMP%\4f9070b6\nfjejdro0wppbx1.dat
- %TEMP%\4f9070b6\3t18a5vd7ybd9z.dll
- %TEMP%\4f9070b6\3t18a5vd7ybd9z.tlb
- %TEMP%\4f9070b6\3t18a5vd7ybd9z.x64.dll
- %TEMP%\4f9070b6\enbqbo@euzh.edu\content\bg.js
- %TEMP%\4f9070b6\enbqbo@euzh.edu\bootstrap.js
- %TEMP%\4f9070b6\enbqbo@euzh.edu\chrome.manifest
- %TEMP%\4f9070b6\enbqbo@euzh.edu\install.rdf
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\hcxtp.js
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\background.html
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\manifest.json
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\content.js
- %TEMP%\4f9070b6\jjbilidpepclnmfccmkaldojdhnifgja\lsdb.js
- %LOCALAPPDATA%\google\chrome\user data\local state
- %LOCALAPPDATA%\google\chrome\user data\default\preferences
- %ALLUSERSPROFILE%\ntuser.pol
- '%WINDIR%\syswow64\regsvr32.exe' /s "%ProgramFiles(x86)%\GoSave\3t18A5vd7YBd9z.x64.dll"
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles(x86)%\GoSave\3t18A5vd7YBd9z.x64.dll"
- '<SYSTEM32>\raserver.exe' /offerraupdate