Technical Information
- [<HKCU>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'DeviceId' = '%ALLUSERSPROFILE%\InstallC113\deviceid.exe'
- %ALLUSERSPROFILE%\profiles\browsermetrics\browsermetrics-607344f1-e1e0.pma
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\log
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\current
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\000003.log
- %ALLUSERSPROFILE%\profiles\default\sessions\tabs_13262640645934682
- %ALLUSERSPROFILE%\profiles\default\session storage\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\session storage\log
- %ALLUSERSPROFILE%\profiles\default\session storage\current
- %ALLUSERSPROFILE%\profiles\default\session storage\000003.log
- %ALLUSERSPROFILE%\profiles\default\secure preferences
- %ALLUSERSPROFILE%\profiles\default\reporting and nel
- %ALLUSERSPROFILE%\profiles\default\previews_opt_out.db
- %ALLUSERSPROFILE%\profiles\default\preferredapps
- %ALLUSERSPROFILE%\profiles\default\preferences
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_1
- %ALLUSERSPROFILE%\profiles\default\platform notifications\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\platform notifications\current
- %ALLUSERSPROFILE%\profiles\default\network persistent state
- %ALLUSERSPROFILE%\profiles\default\network action predictor
- %ALLUSERSPROFILE%\profiles\default\media history
- %ALLUSERSPROFILE%\profiles\default\login data
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\log
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\current
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\000003.log
- %ALLUSERSPROFILE%\profiles\default\history provider cache
- %ALLUSERSPROFILE%\profiles\default\history
- %ALLUSERSPROFILE%\profiles\default\heavy_ad_intervention_opt_out.db
- %ALLUSERSPROFILE%\profiles\default\gpucache\index
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_3
- %ALLUSERSPROFILE%\profiles\default\platform notifications\log
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_2
- %ALLUSERSPROFILE%\profiles\default\shortcuts
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_2
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\index
- %ALLUSERSPROFILE%\profiles\last browser
- %ALLUSERSPROFILE%\profiles\last version
- %ALLUSERSPROFILE%\profiles\local state
- %ALLUSERSPROFILE%\profiles\module info cache
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_0
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_2
- %ALLUSERSPROFILE%\profiles\default\code cache\js\bd9cc947697cc30b_0
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_3
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\index
- %ALLUSERSPROFILE%\update.exe
- %ALLUSERSPROFILE%\installc113\deviceid.exe
- %ALLUSERSPROFILE%\installc113\sqlite.interop.dll
- %TEMP%\evba16d.tmp
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\current
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\000003.log
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_1
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_0
- %ALLUSERSPROFILE%\profiles\devtoolsactiveport
- %ALLUSERSPROFILE%\profiles\desktop.ini
- %ALLUSERSPROFILE%\profiles\default\web data
- %ALLUSERSPROFILE%\profiles\default\visited links
- %ALLUSERSPROFILE%\profiles\default\transportsecurity
- %ALLUSERSPROFILE%\profiles\default\top sites
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\log
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\current
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\000003.log
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\log
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_3
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_0
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\eventdb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\eventdb\log
- %ALLUSERSPROFILE%\profiles\default\code cache\js\3c4e6d405e087557_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\31edb84a24c0c550_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\239280fc7a61be0e_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\17ba171edef75d3f_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\069939484cb77bd0_0
- %ALLUSERSPROFILE%\profiles\default\cache\index
- %ALLUSERSPROFILE%\profiles\default\cache\f_000007
- %ALLUSERSPROFILE%\profiles\default\cache\f_000006
- %ALLUSERSPROFILE%\profiles\default\cache\f_000005
- %ALLUSERSPROFILE%\profiles\default\cache\f_000004
- %ALLUSERSPROFILE%\profiles\default\cache\f_000003
- %ALLUSERSPROFILE%\profiles\default\cache\f_000002
- %ALLUSERSPROFILE%\profiles\default\cache\f_000001
- %ALLUSERSPROFILE%\profiles\default\code cache\js\492b3b94b5cab413_0
- %ALLUSERSPROFILE%\profiles\default\cache\data_3
- %ALLUSERSPROFILE%\profiles\default\cache\data_1
- %ALLUSERSPROFILE%\profiles\default\cache\data_0
- %ALLUSERSPROFILE%\profiles\default\budgetdatabase\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\budgetdatabase\log
- %ALLUSERSPROFILE%\profiles\default\budgetdatabase\current
- %ALLUSERSPROFILE%\profiles\default\autofillstrikedatabase\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\autofillstrikedatabase\log
- %ALLUSERSPROFILE%\profiles\default\autofillstrikedatabase\current
- %ALLUSERSPROFILE%\profiles\crashpadmetrics-active.pma
- %ALLUSERSPROFILE%\profiles\crashpad\settings.dat
- %ALLUSERSPROFILE%\profiles\chrome_shutdown_ms.txt
- %ALLUSERSPROFILE%\profiles\chrome_debug.log
- %ALLUSERSPROFILE%\profiles\certificaterevocation\installc113\sqlite.interop.dll
- %ALLUSERSPROFILE%\profiles\certificaterevocation\installc113\data.bin
- %ALLUSERSPROFILE%\profiles\default\cache\data_2
- %ALLUSERSPROFILE%\profiles\default\code cache\js\5854018eddf7ea85_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\4332ee654ebc80dd_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\6386862eb4b2bb21_0
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\eventdb\current
- %ALLUSERSPROFILE%\profiles\default\code cache\wasm\index
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\log
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\current
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\000003.log
- %ALLUSERSPROFILE%\profiles\default\favicons
- %ALLUSERSPROFILE%\profiles\default\extension state\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\extension state\log
- %ALLUSERSPROFILE%\profiles\default\extension state\current
- %ALLUSERSPROFILE%\profiles\default\extension state\000003.log
- %ALLUSERSPROFILE%\profiles\default\data_reduction_proxy_leveldb\manifest-000002
- %ALLUSERSPROFILE%\profiles\default\data_reduction_proxy_leveldb\log
- %ALLUSERSPROFILE%\profiles\default\data_reduction_proxy_leveldb\current
- %ALLUSERSPROFILE%\profiles\default\cookies
- %ALLUSERSPROFILE%\profiles\default\code cache\wasm\index-dir\the-real-index
- %ALLUSERSPROFILE%\profiles\default\code cache\js\index-dir\the-real-index
- %ALLUSERSPROFILE%\profiles\default\code cache\js\725fe1c72c0806ae_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\index
- %ALLUSERSPROFILE%\profiles\default\code cache\js\ebb9383316aa2d31_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\ce4d2d1e51f46ef4_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\c579785ec3da5241_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\c209e16666480a60_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\bdfa81ac0bf3a95b_0
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_1
- %ALLUSERSPROFILE%\profiles\default\code cache\js\bad8455a70cf77cc_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\984cbd36c70a595f_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\8fe1993d79dab22e_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\8949a25df14fb9f1_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\885aaf6141814d41_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\789afd85db5cfd5c_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\76bd28347049b398_0
- %TEMP%\evba17e.tmp
- nul
- %ALLUSERSPROFILE%\profiles\browsermetrics\browsermetrics-607344f1-e1e0.pma
- %ALLUSERSPROFILE%\profiles\default\session storage\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\session storage\log
- %ALLUSERSPROFILE%\profiles\default\session storage\current
- %ALLUSERSPROFILE%\profiles\default\session storage\000003.log
- %ALLUSERSPROFILE%\profiles\default\secure preferences
- %ALLUSERSPROFILE%\profiles\default\reporting and nel
- %ALLUSERSPROFILE%\profiles\default\previews_opt_out.db
- %ALLUSERSPROFILE%\profiles\default\preferredapps
- %ALLUSERSPROFILE%\profiles\default\preferences
- %ALLUSERSPROFILE%\profiles\default\platform notifications\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\platform notifications\log
- %ALLUSERSPROFILE%\profiles\default\platform notifications\current
- %ALLUSERSPROFILE%\profiles\default\network persistent state
- %ALLUSERSPROFILE%\profiles\default\network action predictor
- %ALLUSERSPROFILE%\profiles\default\media history
- %ALLUSERSPROFILE%\profiles\default\login data
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\log
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\current
- %ALLUSERSPROFILE%\profiles\default\local storage\leveldb\000003.log
- %ALLUSERSPROFILE%\profiles\default\history provider cache
- %ALLUSERSPROFILE%\profiles\default\history
- %ALLUSERSPROFILE%\profiles\default\heavy_ad_intervention_opt_out.db
- %ALLUSERSPROFILE%\profiles\default\gpucache\index
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_3
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_2
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_1
- %ALLUSERSPROFILE%\profiles\default\gpucache\data_0
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\eventdb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\sessions\tabs_13262640645934682
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\current
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\index
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\log
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_3
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_2
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_1
- %ALLUSERSPROFILE%\profiles\shadercache\gpucache\data_0
- %ALLUSERSPROFILE%\profiles\module info cache
- %ALLUSERSPROFILE%\profiles\local state
- %ALLUSERSPROFILE%\profiles\last version
- %ALLUSERSPROFILE%\profiles\last browser
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\index
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_3
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_2
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_1
- %ALLUSERSPROFILE%\profiles\grshadercache\gpucache\data_0
- %ALLUSERSPROFILE%\profiles\devtoolsactiveport
- %ALLUSERSPROFILE%\profiles\desktop.ini
- %ALLUSERSPROFILE%\profiles\default\web data
- %ALLUSERSPROFILE%\profiles\default\visited links
- %ALLUSERSPROFILE%\profiles\default\transportsecurity
- %ALLUSERSPROFILE%\profiles\default\top sites
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\log
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\current
- %ALLUSERSPROFILE%\profiles\default\sync data\leveldb\000003.log
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\log
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\current
- %ALLUSERSPROFILE%\profiles\default\site characteristics database\000003.log
- %ALLUSERSPROFILE%\profiles\default\shortcuts
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\eventdb\log
- %ALLUSERSPROFILE%\profiles\default\shared_proto_db\metadata\000003.log
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\eventdb\current
- %ALLUSERSPROFILE%\profiles\default\code cache\js\492b3b94b5cab413_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\3c4e6d405e087557_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\31edb84a24c0c550_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\239280fc7a61be0e_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\17ba171edef75d3f_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\069939484cb77bd0_0
- %ALLUSERSPROFILE%\profiles\default\cache\index
- %ALLUSERSPROFILE%\profiles\default\cache\f_000007
- %ALLUSERSPROFILE%\profiles\default\cache\f_000006
- %ALLUSERSPROFILE%\profiles\default\cache\f_000005
- %ALLUSERSPROFILE%\profiles\default\cache\f_000004
- %ALLUSERSPROFILE%\profiles\default\cache\f_000003
- %ALLUSERSPROFILE%\profiles\default\cache\f_000002
- %ALLUSERSPROFILE%\profiles\default\cache\f_000001
- %ALLUSERSPROFILE%\profiles\default\cache\data_3
- %ALLUSERSPROFILE%\profiles\default\cache\data_2
- %ALLUSERSPROFILE%\profiles\default\cache\data_1
- %ALLUSERSPROFILE%\profiles\default\cache\data_0
- %ALLUSERSPROFILE%\profiles\default\budgetdatabase\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\budgetdatabase\log
- %ALLUSERSPROFILE%\profiles\default\budgetdatabase\current
- %ALLUSERSPROFILE%\profiles\default\autofillstrikedatabase\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\autofillstrikedatabase\log
- %ALLUSERSPROFILE%\profiles\default\autofillstrikedatabase\current
- %ALLUSERSPROFILE%\profiles\crashpadmetrics-active.pma
- %ALLUSERSPROFILE%\profiles\crashpad\settings.dat
- %ALLUSERSPROFILE%\profiles\chrome_shutdown_ms.txt
- %ALLUSERSPROFILE%\profiles\chrome_debug.log
- %ALLUSERSPROFILE%\profiles\certificaterevocation\installc113\sqlite.interop.dll
- %ALLUSERSPROFILE%\profiles\certificaterevocation\installc113\data.bin
- %ALLUSERSPROFILE%\profiles\default\code cache\js\4332ee654ebc80dd_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\5854018eddf7ea85_0
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\log
- %ALLUSERSPROFILE%\profiles\default\code cache\js\6386862eb4b2bb21_0
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\current
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\000003.log
- %ALLUSERSPROFILE%\profiles\default\favicons
- %ALLUSERSPROFILE%\profiles\default\extension state\manifest-000001
- %ALLUSERSPROFILE%\profiles\default\extension state\log
- %ALLUSERSPROFILE%\profiles\default\extension state\current
- %ALLUSERSPROFILE%\profiles\default\extension state\000003.log
- %ALLUSERSPROFILE%\profiles\default\data_reduction_proxy_leveldb\manifest-000002
- %ALLUSERSPROFILE%\profiles\default\data_reduction_proxy_leveldb\log
- %ALLUSERSPROFILE%\profiles\default\data_reduction_proxy_leveldb\current
- %ALLUSERSPROFILE%\profiles\default\cookies
- %ALLUSERSPROFILE%\profiles\default\code cache\wasm\index-dir\the-real-index
- %ALLUSERSPROFILE%\profiles\default\code cache\wasm\index
- %ALLUSERSPROFILE%\profiles\default\code cache\js\index-dir\the-real-index
- %ALLUSERSPROFILE%\profiles\default\code cache\js\index
- %ALLUSERSPROFILE%\profiles\default\code cache\js\ebb9383316aa2d31_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\ce4d2d1e51f46ef4_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\c579785ec3da5241_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\c209e16666480a60_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\bdfa81ac0bf3a95b_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\bd9cc947697cc30b_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\bad8455a70cf77cc_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\984cbd36c70a595f_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\8fe1993d79dab22e_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\8949a25df14fb9f1_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\885aaf6141814d41_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\789afd85db5cfd5c_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\76bd28347049b398_0
- %ALLUSERSPROFILE%\profiles\default\code cache\js\725fe1c72c0806ae_0
- %ALLUSERSPROFILE%\profiles\default\feature engagement tracker\availabilitydb\manifest-000001
- %ALLUSERSPROFILE%\update.exe
- ClassName: 'EDIT' WindowName: ''
- '%ALLUSERSPROFILE%\update.exe'
- '%ALLUSERSPROFILE%\installc113\deviceid.exe' ""