PUA.WIN32.SEARCHSUITE.AA

 Modified by: John Anthony Banes

 ALIASES:

BrowserModifier:Win32/KipodToolsCby (MICROSOFT)

 PLATFORM:

Windows

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:
 INFORMATION EXPOSURE:

  • Threat Type: Potentially Unwanted Application

  • Destructiveness: No

  • Encrypted: No

  • In the wild: Yes

  OVERVIEW

Infection Channel:

Downloaded from the Internet, Dropped by other malware

This Potentially Unwanted Application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It may be manually installed by a user.

It modifies the user's Internet Explorer home page into a certain website. This action allows the malware to point to a website which may contain malware, putting the affected computer at greater risk of malware infection.

It connects to certain websites to send and receive information. It gathers information and reports it to its servers.

  TECHNICAL DETAILS

File Size:

1,441,952 bytes

File Type:

EXE

Memory Resident:

No

Initial Samples Received Date:

11 Jan 2019

Payload:

Connects to URLs/IPs, Steals information, Modifies system registry, Collects system information

Arrival Details

This Potentially Unwanted Application arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.

It may be manually installed by a user.

Installation

This Potentially Unwanted Application drops the following files:

  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\manifest.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\searchresultstb.dll
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\searchresultsDx.dll
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\custom.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\neterror.xhtml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\partner.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\preferences.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\template.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\toolbar.htm
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\toolbar.xul
  • %Program Files%\Music App\Datamngr\MusicAppHelper.dll
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\vmncode.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\vmnrsswin.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\about.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\custom.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\GC\install.ico
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpanel.xul
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpaneltransparent.xul
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxpanelwin.xul
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxprefwin.xul
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxtransparentwin.xul
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\dtxwin.xul
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\emailnotifierproviders.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\external.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\GC\uninstall.exe
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\neterror.xhtml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsspreview.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsswin.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\rsswin.xsl
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\lib\wmpstreamer.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\modules\datastore.jsm
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\modules\nsDragAndDrop.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconFF.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconPressed.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_iconPressedFF.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\tb_pref_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.jsw
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.jsww
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\widget.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\com.djboxservice.dj.DJBox\thumbs\tb_thumb_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\splash_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\tb_icon.ico
  • %Program Files%\Music App\Datamngr\Uninstall.exe
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\tb_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\widget.jsw
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\content\widgets\net.vmn.www.TuneIn\widget.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\search\engines.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\search\search.xsl
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\data\weather\icons.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\locale.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\lib\en.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\de.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\en.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\es.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\fr.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\locale\toolbar\it.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\Koyotesoft_Icon_16x16.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\Lyrics.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\TRUSTe_about.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ask_logo_18x14.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ask_logo_24x20.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\blip.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\bluelite.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\bluesky.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\break.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-search-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-search.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-settings-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-settings.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-widgets-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn-widgets.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_ask_search.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_settings.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\btn_settings_17padding_18pxheight.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\custom.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\dailymotion.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\divider.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\ebay.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\facebook.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\find-videos.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\grey.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\icon_games.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\images.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lichen.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-about.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo-separator.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\logo.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\menuseparatorback.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\metacafe.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modify-save.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modify.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\modifyhot.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\music_logo.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options-search.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\orange.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\radiobeta-stopped.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\search-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\search_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchtheweb.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\setting_stb_16x.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings_stb_19x.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\settings_stb_19x_over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-bluelite.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-bluesky.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-grey.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-lichen.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-orange.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin-yellow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\skin.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\sv.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\tb_icon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\throbber.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\toolbarsplitter.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\tv.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\twitter.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\veoh.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\video.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\vimeo.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\vmn.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\web.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\websearch.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\yellow.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\youtube.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\RSSLogo.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\add.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\alexabutton.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\aol.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-dn.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-right-disabled.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-right.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\arrow-up.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-divider.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-end.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-mdl.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-mdl_ff.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btn-start.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-divider.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-end.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-mdl.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-mdl_ff.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\bg-btnover-start.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\blank.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn-widgets-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn-widgets.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btn_slider.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnback-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnback-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnleft-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnleft-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnright-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\btnright-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\button-splitter.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\checkmark.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\chevron.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\collapse.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\dtx-test.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\dtx.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\edit-back-hot.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\edit-back.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\expand.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\found.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\gmail.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_blue.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_cyan.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_lime.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_magenta.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\highlight_yellow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\hotmail.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\imap.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\lastsearch-thumb-back.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\launchers.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\loadingMid.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\lock.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\logo-separator.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\mailcom.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_bg-basic.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_separator_bar.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menu_separator_white.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitem-splitter.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemback-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemback-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemleft.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemright-down-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\menuitemright-vista.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\minus.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\modify.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\move.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\movetarget.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-middle.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\notifylabel_ff.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\plus.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\pop.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\radio.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\reload.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\remove.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rename.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\resize-box.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rss.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rsschannelback.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\rsstabdivider.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\scroll-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\scroll-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\search-go.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\search.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\separator.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\text-ellipsis.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\throbber.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\toolbarsplitter.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\transparent_1px.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\yahoo.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\debugbar\debug.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\footer.htm
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gameData.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gameList.xsl
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gamecategory.xsl
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\gametype.xsl
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\initHTML.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupGames.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupHTML.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\popupWidgets.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\scroll.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\ie-only.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\ie7-only.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\jquery.qtip.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\panels.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupAbout.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupGames.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\css\popupWidgets.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\main.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\main.html.bak
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\css\dialog.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\bg.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-close-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-close.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-search.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-wide-close-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\btn-wide-close.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\default.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-middle.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\footer-short-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-off-l.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-off-r.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-on-l.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\tab-on-r.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-middle.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\titlebar-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\transparent.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-mdl.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\ttlbar-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-mdl.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-right-resize.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-btm-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\images\win-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\scripts\defscript.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\default\scripts\defscript.js.bak
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\TRUSTe_about.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ajax-loader.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\apps-bg-gradient-grid.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\apps-hover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\appsfeatured-bg-gradient-grid.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-dn.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-down-white.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-sml-drop.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-sml.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrow-up.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\arrowr-bluew5.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ask_search_212wide.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ask_search_215wide.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-aboutbox.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-btnover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-pnl520x390.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-thumb-y.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-track-y.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bg-scrollbar-trackend-y.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-add-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-add.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-left-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-addtoolbar-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-back.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-grey-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-grey.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-greyover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-close.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-left22-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-left22.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-middle22-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-middle22.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-right22-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-dark-right22.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-drag.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-install.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-launch-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-launch.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-mdl-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-mdl.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-moredetails.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-next-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-next.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-play-left-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-play-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-previous-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-previous.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-right-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-search-pnlbtm-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-search-pnlbtm.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-try-left-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\btn-try-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\bullet-orange.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\categories-bg-gradient-grid.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\dislike.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\dislike_over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\featured-bg-btm-gradient.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-middle.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\footer-short-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\gamethumb-on.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\gamethumb2-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-box-next.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-calendar.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-dollar.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-download.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-info-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-info.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-joystick24.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-news24.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-play.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-pref-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-pref.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-tags.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\ico-user-monitor.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-Add.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-Info.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-download.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-play.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\icon-shop.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\left-menu-hover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\like.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\like_over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\menul-bgon.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\menul-bgover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\panel-botm-noscroll.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-bg-206.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-bg.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scroll-topwin.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-disable.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-down.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollb.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-disable.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-down.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\scrollt.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchbox-pnlbtm.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchbox.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchboxlite.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchboxlite_end.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\searchtheweb.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\shadow-leftmenu.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\sprite-dropdown.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_blank.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_x_grey.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\star_x_orange.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\thumb-up.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-middle.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\titlebar-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\topbar-inside-gradient.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-detailed-on.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-detailed-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-thumb-on.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\view-thumb-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets-square-16px.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets-square-24px.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\widgets.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-bottom-middleglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-bottomglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-middleglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-left-topglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-bottomglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-middleglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-right-topglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\images\win-top-middleglow.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\default.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.qtip.min.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.tinyscrollbar.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.tinyscrollbar.min.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.uniform.min.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\panels\js\jquery.url.js
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_02.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_03.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_04.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_06.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_07.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_08.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_09.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_10.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_11.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_12.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_13.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_14.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_15.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_16.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_18.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_19.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_20.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\border_21.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\btn-close-grey.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\btn-close-greyover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\close-hot.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\close-normal.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\loadingMid.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\paneltemplate.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\proxy.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.html.bak
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\template.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\templateFF.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\uwa\throbber.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\cond999.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\icons.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na-s.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na-t.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\na.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\icons\weather.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\popupWeather.css
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\popupWeather.html
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\add.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\arrowr-bluew5.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue-whitebg.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\bg-pnl520x350blue.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\box-check.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\box-uncheck.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-close-grey.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-close-greyover.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-delete.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm-over.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btn-search-pnlbtm.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next-off.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-next.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous-off.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\btnarrow-previous.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-check.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid-s.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\ico-hotandhumid.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\options-weather.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\over-blue.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\over-orange.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\powered-by-weatherbug2.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\radio-checked.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\radio-unchecked.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\searchbox-pnlbtm.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\lib\weatherbutton\panels\images\weather-contour.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-main.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-search.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-weather.gif
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-weather.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\options\options-widgets.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-left.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-middle.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\chrome\skin\searchbar\searchbar-background-right.png
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\manifest.xml
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\dtuser.exe
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\as_guid.dat
  • %Program Files%\Music App\Datamngr\SRTOOL~1\IE\install.ico
  • %Program Files%\jZip\license.rtf
  • %Program Files%\jZip\Archive created by free jZip.url
  • %Program Files%\jZip\change.exe
  • %Program Files%\jZip\jZip.exe
  • %Program Files%\jZip\7z.dll
  • %Program Files%\jZip\CoreArchiver.dll
  • %Program Files%\jZip\InstallHelper.dll
  • %Program Files%\jZip\jZipShell.dll
  • %Program Files%\jZip\jZipShell64x.dll
  • %Program Files%\jZip\ResourcesLOC.dll
  • %Program Files%\jZip\Uninstall.exe
  • %Program Files%\jZip\Helper.dll
  • %Program Files%\jZip\tgames.ico
  • %Program Files%\jZip\log.log

Other System Modifications

This Potentially Unwanted Application adds the following registry entries as part of its installation routine:

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
pver = "5.0.0.16274"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr
Version = "5.0.0.16274"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
appid = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
home = "%Program Files%\Music App"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ln = "en"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
sysid = "{System ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
osver = "{OS Version}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
nativemsgpath = "%AppDataLocal%"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
Publisher = "IAC Search and Media, Inc."

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
DisplayVersion = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
DisplayIcon = "%Program Files%\Music App\Datamngr\SRTOOL~1\GC\install.ico"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
DisplayName = "Music Search App for Chrome"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
InstallLocation = "%Program Files%\Music App\Datamngr\SRTOOL~1\GC"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
UninstallString = "%Program Files%\Music App\Datamngr\SRTOOL~1\GC\uninstall.exe /UN=CR /PID=JZP2-DTX /PCD=IMH /OCODE=APN10646"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
NoModify = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
NoRepair = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\
Windows\CurrentVersion\Uninstall\
imeshjzipmusictoolbarCR
EstimatedSize = "0"

HKEY_CURRENT_USER\Software\Microsoft\
Internet Explorer\Main
Start Page = "http://www.{BLOCKED}h.{BLOCKED}k.com/?o=APN10646A&gct=hp&d=102-0&v=n16274-2050&t=4"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
Class ID = "{CLSID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
trgb = "CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
IMH-LPD
lastinstalled = "JZP2-DTX"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
IMH-LPD
lastinstalled-CR = "JZP2-DTX"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
browsers = "1-CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX
lastinstalled = "CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
o = "APN10646"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
dbr = "CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
trgb = "CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
Browsers = "1-CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
anxv = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
anxtv = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
p2 = "^AG7^BND102^YY^PH"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
guid = "{GUID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
tbsinstalled = ""

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
d = "102-0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
v = "n16274-2050"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
t = "4"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
CRXS\aaaaaikjhckghnoaaaehhmgjcfajoabi
Partner ID = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
CRXS
Last Installed IMH = "JZP2-DTX"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
hp_o = "APN10646A"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
appid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
sysid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
hp = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
ds = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=CR&psv=&o=APN10646&gct=ds&q={searchTerms}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
nt = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&d=&v=&t=&gct=tab"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
sb = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=CR&psv=&o=APN10646&gct=sb&q={searchTerms}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
doi = "{Current Date}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
timeofinstall = "{Current Time}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
locale = "en_PH"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
apn_ptnrs = "^AG7"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
apn_dtid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
CountryCode = "{Country Code}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
trackid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
apn_uid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
Version = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
nthp_cr = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
hpr_cr = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
test = "override"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
testa = "override extra"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\CR\macro
testb = "testing"

HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
CheckInterval = "1440"

HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
Version = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
VersionCompareDigits = "3"

HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX
UpdateAllSubPackageToVersion = "999.9.9.9"

HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX\
JZP2-DTX
CmdArgs = "/S /trgb=update"

HKEY_LOCAL_MACHINE\SOFTWARE\AskPartnerNetwork\
PackageService\Register\DTX\
JZP2-DTX
Version = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
o = "APN10646"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
dbr = "CR"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
appid = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
sysid = "102"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
hp = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
ds = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=IE&psv=&o=APN10646&gct=ds&q={searchTerms}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
nt = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&d=&v=&t=&gct=hp"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
sb = "http://www.{BLOCKED}h.{BLOCKED}k.com/web?p2=%5EAG7%5EBND102%5EYY%5EPH&apn_uid=3754470714044341&apn_ptnrs=%5EAG7&tpid=JZP2-DTX&apn_dtid=^BND102^YY^PH&apn_dbr=CR&doi=2019-01-11&trgb=IE&psv=&o=APN10646&gct=sb&q={searchTerms}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
doi = "2019-01-11"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
timeofinstall = "2019-01-11T14:59:12"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
locale = "en_PH"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
apn_ptnrs = "^AG7"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
apn_dtid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
CountryCode = "PH"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
trackid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
apn_uid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
Version = "2.9.0.0"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
nthp_cr = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
hpr_cr = "http://www.{BLOCKED}h.{BLOCKED}k.com/?&o=APN10646A&gct=hp&d=&v=&t="

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
test = "override"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
testa = "override extra"

HKEY_LOCAL_MACHINE\SOFTWARE\APNDTX\
JZP2-DTX\IE\macro
testb = "testing"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
jZip.file

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
jZip.file\DefaultIcon

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
jZip.file\shell\open\
command

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities
ApplicationDescription = "jZip Archive"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.001 = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.7z = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.arj = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.bz2 = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.cab = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.gz = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.gzip = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.iso = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.rar = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tar = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.taz = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tbz = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tgz = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.tpz = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.z = "jZip.file"

HKEY_LOCAL_MACHINE\SOFTWARE\jZip\
Capabilities\FileAssociations
.zip = "jZip.file"

HKEY_CURRENT_USER\Software\jZip
iver = "2.0.0.134601"

HKEY_CURRENT_USER\Software\jZip
pver = "2.0.0.135670"

HKEY_CURRENT_USER\Software\jZip
appid = "{ID}"

HKEY_CURRENT_USER\Software\jZip
home = "%Program Files%\jZip"

HKEY_CURRENT_USER\Software\jZip
ln = "en"

HKEY_CURRENT_USER\Software\jZip
sysid = "{ID}"

HKEY_CURRENT_USER\Software\jZip
clid = "{CLSID}"

HKEY_CURRENT_USER\"Software\jZip\
jZip"
defaultBrowser = "1"

HKEY_CURRENT_USER\Software\jZip
osver = "6.1"

HKEY_CURRENT_USER\Software\jZip
ostype = "win32"

HKEY_CURRENT_USER\Software\jZip
osl = "ja-JP"

HKEY_CURRENT_USER\Software\jZip
itime = "2019-01-11"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.7z

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.gz

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.iso

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.TAZ

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.tpz

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.001

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.zip

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.z

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.tgz

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.arj

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.TBZ

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.tar

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.RAR

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.gzip

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.BZ2

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.zip
PerceivedType = "compressed"

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
.zip\jZip.file\ShellNew
Data = "{Hex Values}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ostype = "{OS Type}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
osl = "{Language}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
itime = "{Current Time}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ptype = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
kisid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
kapid = "{ID}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
uid = "{UID}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
guid = "{GUID}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
os_user_type = "{User Type}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr
browser = " {Browser Available}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr
activeBrowser = "{Active Browser}"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ie_ds_supported = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
ie_hp_supported = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
chrome_ds_supported = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Datamngr\
General
chrome_hp_supported = "1"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\aaaaaikjhckghnoaaaehhmgjcfajoabi
path = "%AppDataLocal%\imeshjzipmusictoolbar\GC\toolbar.crx"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\aaaaaikjhckghnoaaaehhmgjcfajoabi
version = "32.6"

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\NativeMessagingHosts\com.apn.native_messaging_host_aaaaaikjhckghnoaaaehhmgjcfajoabi

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\NativeMessagingHosts\com.apn.native_messaging_host_aaaaafeopjhkcolncjbedbhofpocmdbn

HKEY_LOCAL_MACHINE\SOFTWARE\Google\
Chrome\Extensions\aaaaaikjhckghnoaaaehhmgjcfajoabi
update_url = "https://{BLOCKED}s2.google.com/service/update2/crx"

Web Browser Home Page and Search Page Modification

This Potentially Unwanted Application modifies the user's Internet Explorer home page to the following websites:

  • http://www.{BLOCKED}h.{BLOCKED}k.com/?o={value}&gct={value}&d={value}&v={value}&t={value}

Other Details

This Potentially Unwanted Application connects to the following website to send and receive information:

  • http://{BLOCKED}x.{BLOCKED}ytics.com/tr.gif?{data}
  • http://{BLOCKED}e.{BLOCKED}be.com/install_statistics.php
  • http://{BLOCKED}e.{BLOCKED}p.com/install_statistics.php
  • http://{BLOCKED}rch.{BLOCKED}k.com/geolocation
  • http://www.{BLOCKED}p.com/post_install.php?{data}
  • http://www.{BLOCKED}ivery.com/www/delivery/so/init_offer.php?{data}

It gathers the following information and reports it to its servers:

  • PUA Version
  • Installation Result (If success, fail, etc.)
  • Default Search Engine
  • OS Version and Architecture (32-bit or 64-bit)
  • OS Language
  • Internet Explorer Version
  • Firefox Version
  • Google Chrome Version
  • Location/Country

NOTES:
After installation, it opens the following webpage: http://www.{BLOCKED}p.com/post_install.php?{data}

It displays the following message to allow the user to choose their default search engine:

  SOLUTION

Minimum Scan Engine:

9.850

SSAPI PATTERN File:

2.137.00

SSAPI PATTERN Date:

10 Jan 2019

Step 1

Before doing any scans, Windows XP, Windows Vista, and Windows 7 users must disable System Restore to allow full scanning of their computers.

Step 2

Note that not all files, folders, and registry keys and entries are installed on your computer during this malware's/spyware's/grayware's execution. This may be due to incomplete installation or other operating system conditions. If you do not find the same files/folders/registry information, please proceed to the next step.

Step 3

Identify and terminate files detected as PUA.WIN32.SEARCHSUITE.AA

[ Learn More ]
  1. Windows Task Manager may not display all running processes. In this case, please use a third-party process viewer, preferably Process Explorer, to terminate the malware/grayware/spyware file. You may download the said tool here.
  2. If the detected file is displayed in either Windows Task Manager or Process Explorer but you cannot delete it, restart your computer in safe mode. To do this, refer to this link for the complete steps.
  3. If the detected file is not displayed in either Windows Task Manager or Process Explorer, continue doing the next steps.

Step 4

Remove PUA.WIN32.SEARCHSUITE.AA by using its own Uninstall option

[ Learn More ]
To uninstall the grayware process

Step 5

Scan your computer with your Trend Micro product to delete files detected as PUA.WIN32.SEARCHSUITE.AA. If the detected files have already been cleaned, deleted, or quarantined by your Trend Micro product, no further step is required. You may opt to simply delete the quarantined files. Please check the following Trend Micro Support pages for more information:

Step 6

Reset the Internet Explorer Home and Search pages

[ Learn More ]


Did this description help? Tell us how we did.