Technical Information
- [HKLM\System\CurrentControlSet\Services\EC SyncPlayer 11.4.45] 'Start' = '00000002'
- [HKLM\System\CurrentControlSet\Services\EC SyncPlayer 11.4.45] 'ImagePath' = '%ALLUSERSPROFILE%\EC SyncPlayer 11.4.45\EC SyncPlayer 11.4.45.exe'
- 'EC SyncPlayer 11.4.45' %ALLUSERSPROFILE%\EC SyncPlayer 11.4.45\EC SyncPlayer 11.4.45.exe
- %TEMP%\is-ftuaj.tmp\<File name>.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-01uei.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-ip9lu.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-9gqqe.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-mdrpd.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-lopsl.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-ji30h.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-6egl5.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-as2lu.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-2fqho.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-f96jm.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-g8k1j.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-ev4n7.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-toojq.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-uu8hi.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-o17cv.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-p1p63.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-d895a.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-orgv8.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\syncplayer32.exe
- %LOCALAPPDATA%\syncplayer 2.7.3\is-8hf3p.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\unins000.dat
- %LOCALAPPDATA%\syncplayer 2.7.3\is-43n9q.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-q3e6k.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-vb301.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-9kvqv.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-c3vvj.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-3oljj.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-73j7c.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-p7eie.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-n2kel.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-p3is0.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-sks0n.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-nlep3.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-euo57.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-ijo93.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-r00j4.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-ntdo6.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-j2qli.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-ed30g.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-q5kt2.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-4self.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.windows.common-controls\is-gkrla.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-22i0a.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-78326.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-eqb7j.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-un5qb.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-3s30b.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-gu3ai.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-12sl6.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-7m6ic.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-900qh.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\is-j1b3q.tmp
- %TEMP%\is-m8pca.tmp\_isetup\_iscrypt.dll
- %TEMP%\is-m8pca.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-m8pca.tmp\_isetup\_setup64.tmp
- %TEMP%\is-m8pca.tmp\_isetup\_regdll.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-p398q.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-dt153.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-flhuk.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-dbbj6.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-a2sj9.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-tn8al.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-r6npj.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-io651.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-36aup.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-sekuc.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-1e7pb.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-6lkoi.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-toc1j.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-jh1dr.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-bh1l1.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-5vr0h.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-v48lf.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-q4kfa.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-0uhtu.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-t6di3.tmp
- %LOCALAPPDATA%\syncplayer 2.7.3\language\is-tcup9.tmp
- %ALLUSERSPROFILE%\ec syncplayer 11.4.45\ec syncplayer 11.4.45.exe
- %LOCALAPPDATA%\syncplayer 2.7.3\verify.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-j1b3q.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\unins000.exe
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-9gqqe.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\postproc-51.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-mdrpd.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\encodesettings.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-lopsl.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\intelhw.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-ji30h.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\nvencoderkernel.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-6egl5.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\cudaencoderkernel.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-01uei.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\recwin7.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-2fqho.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\capture.wav
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-f96jm.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\avutil-52.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-g8k1j.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\avformat.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-ev4n7.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\postproc-52.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-toojq.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\avdevice-55.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-uu8hi.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\audioresample.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-o17cv.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\bitmap2avi.dll.intermediate.manifest
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-d895a.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\camcapture.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-1e7pb.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_russian.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-as2lu.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\screenhook.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-9kvqv.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\istask.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-c3vvj.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\apngdecoder.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-3oljj.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\servicectrl.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-p7eie.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\installhelp.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-orgv8.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\ve64.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-n2kel.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\ve32.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-p1p63.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\pthreadvc2.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-ip9lu.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\pthreadgc2.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-nlep3.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\xvidcore.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-euo57.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\waverec.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-ijo93.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\waverec.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-r00j4.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\utlis.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-8hf3p.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\textdlg.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-j2qli.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\swscale-2.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-sks0n.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\magicskin.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-ntdo6.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\swresample-0.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-73j7c.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_spanish.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-ed30g.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_russian.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-6lkoi.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_portugues.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-eqb7j.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\mfcm90.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-900qh.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\microsoft.vc90.crt.manifest
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-7m6ic.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\msvcm90.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-p398q.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\msvcp90.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\is-12sl6.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.crt\msvcr90.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-3s30b.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\mfc90.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-q3e6k.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\gsdownload.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-un5qb.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\mfc90u.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-dbbj6.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\italian.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-22i0a.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\microsoft.vc90.mfc.manifest
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.windows.common-controls\is-gkrla.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.windows.common-controls\comctl32.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-4self.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\chinese(traditional).ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-gu3ai.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\english.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-tcup9.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\frence.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\is-78326.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\microsoft.vc90.mfc\mfcm90u.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-p3is0.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\verify.dll
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-t6di3.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\portugues.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-v48lf.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_chinese(traditional).ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-0uhtu.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\russian.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-flhuk.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_italian.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-a2sj9.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_japanese.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-tn8al.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_frence.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-r6npj.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_english.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-io651.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\autosettings_chinese(traditional).ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-q4kfa.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\spanish.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-36aup.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\index.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-q5kt2.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\japanese.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-toc1j.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_portugues.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-dt153.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_italian.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-jh1dr.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_japanese.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-bh1l1.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_frence.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-5vr0h.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_english.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\language\is-sekuc.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\language\waverec_spanish.ini
- from %LOCALAPPDATA%\syncplayer 2.7.3\is-43n9q.tmp to %LOCALAPPDATA%\syncplayer 2.7.3\syncplayer32.exe
- %LOCALAPPDATA%\syncplayer 2.7.3\verify.dll
- ClassName: 'nf6c4d_spBom_1142_nf6c4d' WindowName: ''
- '%TEMP%\is-ftuaj.tmp\<File name>.tmp' /SL5="$180182,5829291,54272,<Full path to file>"
- '%LOCALAPPDATA%\syncplayer 2.7.3\syncplayer32.exe' -i