IOC Report
SecuriteInfo.com.PUA.Bundler.iStartSurf.29803.17991.exe

loading gif

Files

File Path
Type
Category
Malicious
SecuriteInfo.com.PUA.Bundler.iStartSurf.29803.17991.exe
PE32 executable (console) Intel 80386, for MS Windows
initial sample
C:\Users\user\Desktop\Asr\??????????readme 1st.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\AllCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF, CR line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\????????????????????????(Don't edit this folder).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Bar\Default.ico
MS Windows icon resource - 1 icon, 16x16, 24 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\ExternalDefCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\ExternalUserCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF, CR, LF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\UsrMenu1.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\UsrMenu2.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\UsrMenu3.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_Filter.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_FolderBarAction.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_FolderBarSelItem.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_FolderBarSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ItemClip.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ItemClipSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ListContextMenu.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ListHeader(Detail).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ListNoSelContextMenu.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_PreviewBarSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_RecentBarSelItem.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_RecentBarSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_SortMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabDropMenu.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabMenu.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabMenuSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabMngBarAction.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabMngBarSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabMngContextMenu.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TabletAssistSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_TaskTray.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ToolbarIconMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ToolbarListMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ToolbarSortMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_UserBarAction.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_UserBarNoSel.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_UserBarSelDir.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_UserBarSelItem.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_UserBarSetting.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Menu\_ViewMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\PlugInCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\ScriptCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF, LF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\ScriptNaviCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Script\BinEdit.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Script\Editor.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Script\Viewer.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Script\_ListNoSelClk.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Script\_ListNoSelDblClk.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Copy.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Cut.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Delete.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Edit.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\FileNew.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Icon Image L.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Icon Image M.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Icon M.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Menu.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\MkDir.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Mode Contents.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Mode Detail.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Mode Icon.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Mode Tile.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Pack.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Paste.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Property.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Refresh.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Rename.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\SelectAll.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Sort Date.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Sort Name.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Undo.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Unpack.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\Icon\Viewer.ico
MS Windows icon resource - 1 icon, 16x16, 8 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\EditorMode\Icon Image M
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\EditorMode\Icon M
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\EditorMode\Mode Detail
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\EditorMode\Mode Tile
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\EditorMode\Sort Date
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\EditorMode\Sort Name
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Copy
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Cut
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Delete
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Edit
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\FileNew
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Menu
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\MkDir
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Pack
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Paste
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Property
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Refresh
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Rename
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\SelectAll
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Undo
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Unpack
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\FileManageMode\Viewer
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Icon Image L
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Icon Image M
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Icon M
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Mode Contents
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Mode Detail
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Mode Icon
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Mode Tile
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Sort Date
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ShellMode\Sort Name
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\Icon Image L
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\Icon Image M
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\Icon M
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\Mode Contents
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\Mode Icon
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\Mode Tile
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\sort Date
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\ViewerMode\sort Name
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\_ChangeDesktopMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\_ChangeTabletMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\_EditorMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\_FileManageMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\_ShellMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\Tablet\TabletAssist\_ViewerMode.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\UserImages.bmp
PC bitmap, Windows 3.x format, 176 x 15 x 24, image size 7922, resolution 2834 x 2834 px/m, cbSize 7976, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\InitTemp\UserMenuCommand.txt
Unicode text, UTF-16, little-endian text, with CRLF, LF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\Lang\Msg.ja-JP.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\NewCommand.template
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\StatusAnime\Note\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\StatusAnime\Note\img.bmp
PC bitmap, Windows 3.x format, 64 x 16 x 24, image size 3072, cbSize 3126, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\Default\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\Default\img.bmp
PC bitmap, Windows 3.x format, 64 x 16 x 24, image size 3072, cbSize 3126, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\MameHip\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\MameHip\img.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 4, image size 256, resolution 3780 x 3780 px/m, cbSize 374, bits offset 118
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\Mame\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\Mame\img.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 4, image size 256, resolution 3780 x 3780 px/m, cbSize 374, bits offset 118
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\SimpleNumbers\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\StatusImg\SimpleNumbers\img.bmp
PC bitmap, Windows 3.x format, 160 x 16 x 24, image size 7680, resolution 3780 x 3780 px/m, cbSize 7734, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\????????????????????????(Don't edit this folder).txt
Non-ISO extended-ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\Back.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\FilterClear.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\FilterClose.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\FilterDlg.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\FilterVisible.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\Forward.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\Go.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\History.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\Refresh.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\SerchClose.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\SerchHighlighting.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\SerchNext.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\SerchPrev.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\SerchSelect.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\SerchVisible.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\Stop.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\TreeVisible.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\AddressBar\up.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Bar\Baricon.bmp
PC bitmap, Windows 3.x format, 144 x 16 x 24, image size 6912, cbSize 6966, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Bar\Tabicon.bmp
PC bitmap, Windows 3.x format, 64 x 16 x 24, image size 3072, cbSize 3126, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Check\CheckExplore.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Check\CheckItem.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Check\CheckLock.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\LookDir\LookDir.bmp
PC bitmap, Windows 3.x format, 16 x 16 x 24, image size 768, resolution 2834 x 2834 px/m, cbSize 822, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\LookDir\LookSystem.bmp
PC bitmap, Windows 3.x format, 16 x 16 x 24, image size 768, cbSize 822, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\LookDir\NoLook.bmp
PC bitmap, Windows 3.x format, 16 x 16 x 24, image size 768, cbSize 822, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Tab\NewHere.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Tab\NewWindow.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\Tab\WindowMenu.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeContents.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeDetalList.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeIcon.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeIconOnly.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeList.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeReport.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\ViewMode\modeTile.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\icon\NetWork.ico
MS Windows icon resource - 2 icons, 16x16, 24 bits/pixel, 32x32, 24 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\img\Default\icon\NoImage.ico
MS Windows icon resource - 2 icons, 16x16, 24 bits/pixel, 32x32, 24 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\Back.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, resolution 3779 x 3779 px/m, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\FilterDlg.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\FilterVisible.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\Forward.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\Go.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\History.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\Refresh.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\AddressBar\up.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\Check\CheckLock.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\TabImg\img.bmp
PC bitmap, Windows 3.x format, 20 x 312 x 24, image size 18720, resolution 3780 x 3780 px/m, cbSize 18774, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\TabImg\img.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeContents.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeDetalList.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeEasyReport.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeIcon.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeIconOnly.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeList.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeReport.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\ViewMode\modeTile.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\Win8\icon\NetWork.ico
MS Windows icon resource - 1 icon, 16x16, 24 bits/pixel
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\AddressBar\Back.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\AddressBar\Forward.bmp
PC bitmap, Windows 3.x format, 48 x 16 x 24, image size 2304, cbSize 2358, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\Check\CheckLock.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\Readme.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\TabImg\img.bmp
PC bitmap, Windows 3.x format, 10 x 312 x 24, image size 9984, resolution 3780 x 3780 px/m, cbSize 10038, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\TabImg\img.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeContents.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeDetalList.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeEasyReport.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeIcon.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeIconOnly.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeList.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeReport.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\Common\img\mame4\ViewMode\modeTile.bmp
PC bitmap, Windows 3.x format, 32 x 16 x 24, image size 1536, cbSize 1590, bits offset 54
dropped
C:\Users\user\Desktop\Asr\FirstSetting.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\How to uninstall.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\How to update.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\InstallTest\Test32.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\InstallTest\Test64.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\KeyLayout\Explorer\CommandMode.key
data
dropped
C:\Users\user\Desktop\Asr\KeyLayout\Explorer\SerchMode.key
data
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\??.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\???(????).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\???.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\????(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\?????(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?? ??\??????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\????\???????(? ???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\????\?????????(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\?(1??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\?(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\??(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\??(???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\??(????).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\??.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample\?\???.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\Option\MacroHelper\OS_path.txt
Unicode text, UTF-16, little-endian text, with very long lines (460), with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\Option\MacroHelper\asr_path.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\Option\MacroHelper\macro_input.txt
Unicode text, UTF-16, little-endian text, with very long lines (699), with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\Option\MacroHelper\mouse_pos.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\Option\MacroHelper\on_off.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\Lang\.ja-JP\Option\MacroHelper\status_area.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\UpdateAsr.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\history.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\x64\Asr.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\AsrLoad.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\Associate.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\Lang\Asr.ja-JP.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\Unreg.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\.ja-JP\FileRenameEx\FileRenameEx.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ArcDllInfo.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ArcPack.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ArcUnPack.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\BindFile._xe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ChgImgFmt.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ChgTxtFmt.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\CreateErrorReport.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\CreateErrorReport\report.bat
DOS batch file, ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\CreateErrorReport\report.ja-JP
HTML document, Non-ISO extended-ASCII text, with LF, NEL line terminators
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\CreateLink.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\CreateLocalTumb.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\CreateTumbImg.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\DivFile.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\DriveInfo.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\Export.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileAttribute.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileCpMv.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileDelete.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileExecute.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileExport.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileInfo.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileNameCp.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileNewEx.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileRename.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileRenameEx.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileReproduction.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FileShortcut.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FolderIconChange.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\FreeMem.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\LockProcess.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\MakeArchive.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\MakeBigFile.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\MakeSelfExtract.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\MemInfo.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\MkDir.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\MoveFolder.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\Option.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\RemoveZoneID.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\RmHardware.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ScreenSaver.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\SettingInitialization.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellCascadeWindows.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellMinimizeALL.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellSetTime.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellStartMenu.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellTileHorizontally.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellTileVertically.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellUndoMinimizeALL.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\ShellWinHELP.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\SimilarCopy.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\VersionCheck.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\VersionInfo.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Default\WinEx.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\PvPlugIn\AdobeReader.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\PvPlugIn\InternetExplore.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\PvPlugIn\MediaPlayer.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\.ja-JP\Brws\Brws.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\.ja-JP\Fin\Fin.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\.ja-JP\MArc\MArc.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\.ja-JP\Seeker\Seeker.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\.ja-JP\Txv\Txv.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\Brws.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\Fin.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\ICON.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\MArc.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\Seeker.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\SendToCompress.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\SendToExtract.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x64\command\Viewer\Txv.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\Asr.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\AsrLoad.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\Associate.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\Lang\Asr.ja-JP.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\Unreg.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\.ja-JP\FileRenameEx\FileRenameEx.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ArcDllInfo.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ArcPack.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ArcUnPack.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\BindFile._xe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ChgImgFmt.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ChgTxtFmt.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\CreateErrorReport.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\CreateErrorReport\report.bat
DOS batch file, ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\CreateErrorReport\report.ja-JP
HTML document, Non-ISO extended-ASCII text, with LF, NEL line terminators
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\CreateLink.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\CreateLocalTumb.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\CreateTumbImg.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\DivFile.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\DriveInfo.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\Export.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileAttribute.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileCpMv.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileDelete.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileExecute.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileExport.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileInfo.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileNameCp.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileNewEx.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileRename.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileRenameEx.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileReproduction.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FileShortcut.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FolderIconChange.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\FreeMem.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\LockProcess.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\MakeArchive.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\MakeBigFile.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\MakeSelfExtract.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\MemInfo.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\MkDir.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\MoveFolder.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\Option.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\RemoveZoneID.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\RmHardware.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ScreenSaver.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\SettingInitialization.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellCascadeWindows.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellMinimizeALL.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellSetTime.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellStartMenu.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellTileHorizontally.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellTileVertically.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellUndoMinimizeALL.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\ShellWinHELP.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\SimilarCopy.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\VersionCheck.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\VersionInfo.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Default\WinEx.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\PvPlugIn\AdobeReader.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\PvPlugIn\InternetExplore.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\PvPlugIn\MediaPlayer.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\PvPlugIn\RealPlayer.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\.ja-JP\Brws\Brws.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\.ja-JP\Fin\Fin.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\.ja-JP\MArc\MArc.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\.ja-JP\Seeker\Seeker.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\.ja-JP\Txv\Txv.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\Brws.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\Fin.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\ICON.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\MArc.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\Seeker.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\SendToCompress.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\SendToExtract.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\Asr\x86\command\Viewer\Txv.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
\Device\ConDrv
ASCII text, with CRLF, CR line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample1000?????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample50?(???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??(16??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??(32??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??(8??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample???(???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample???(????).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample???(??????).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample???.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample?????(1??/???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample?????(??).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample?????(???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample?????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??????(???).txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample??????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample???????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample????????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sample?QC????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
\Device\HarddiskVolume3\Users\user\Desktop\Asr\Lang\.ja-JP\MkDir\sampleQC????.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
There are 402 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.PUA.Bundler.iStartSurf.29803.17991.exe
"C:\Users\user\Desktop\SecuriteInfo.com.PUA.Bundler.iStartSurf.29803.17991.exe"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1

URLs

Name
IP
Malicious
http://www.all.undo.jp/asr/AppendixRuntime.html
unknown
http://ftp://.exe
unknown
http://hp.vector.co.jp/authors/VA020799/asr_verinfo.cgiasr
unknown
https://all.undo.jp/asr/man5/notepad%s%s%s
unknown
http://www.all.undo.jp/asr/man5/8.Custmize/1.UserFolder/2.ScriptCommand/05.html
unknown
http://www.all.undo.jp/
unknown
http://www.all.undo.jp/asr/
unknown
https://all.undo.jp/asr/AppendixRuntime.htmlopenhttps://all.undo.jp/asr/Appendix.htmlSuccessful
unknown
http://hp.vector.co.jp/authors/VA033418/)
unknown
http://www.all.undo.jp/asr/1st/document/02_05.html
unknown
http://www.all.undo.jp/asr/man5/2.install/05.html
unknown
https://all.undo.jp/asr/man5/Kernel32.dllSetDefaultDllDirectoriesMakeBigFile
unknown
http://www.all.undo.jp/asr/Appendix.html
unknown
http://www.all.undo.jp/asr/man5/8.Custmize/1.UserFolder/2.ScriptCommand/07.html
unknown
http://www.all.undo.jp/asr/man5/8.Custmize/1.UserFolder/2.ScriptCommand/01.html
unknown
http://www.all.undo.jp/asr/man5/
unknown
https://http://ftp://.exe.lnk.ico.cur.ani.scr.EXE.LNK.ICO.CUR.ANI.SCR%s(%d)%s?:
unknown
http://www.all.undo.jp/asr/man5/2.install/01.html
unknown
http://www.all.undo.jp/asr/man5/9.Infomation/1.Usage/01.html
unknown
http://www.all.undo.jp/cgi/report/report.cgi
unknown
https://all.undo.jp/asr/man5/9.Infomation/1.Usage/01.htmlopen
unknown
http://search.msn.co.jp/?FORM=HPREFavoritesSoftware
unknown
https://all.undo.jp/Invalid
unknown
https://all.undo.jp/asr/AppendixRuntime.htmlhttps://all.undo.jp/asr/Appendix.htmlSuccessful
unknown
https://http://ftp://.exe.lnk.ico.cur.ani.scr.EXE.LNK.ICO.CUR.ANI.SCR%s%s%s(%d)%s
unknown
https://all.undo.jp/
unknown
http://www.all.undo.jp/asr/man5/2.install/04.html
unknown
http://www.all.undo.jp/asr/man5/8.Custmize/1.UserFolder/2.ScriptCommand/02.html
unknown
https://all.undo.jp/asr/man5/notepadwb
unknown
http://www.all.undo.jp/asr/1st/document/02_04.html
unknown
http://search.msn.co.jp/?FORM=HPRECChildFrameSoftware
unknown
https://all.undo.jp/asr/man5/%s%s%s
unknown
https://all.undo.jp/asr/man5/
unknown
There are 23 hidden URLs, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
2C70000
heap
page read and write
21AB000
heap
page read and write
29F0000
direct allocation
page read and write
2E30000
heap
page read and write
2BB0000
heap
page read and write
20C5000
heap
page read and write
2B70000
direct allocation
page read and write
2A70000
direct allocation
page read and write
20CD000
heap
page read and write
25E4000
heap
page read and write
2C31000
heap
page read and write
2CB0000
heap
page read and write
20C3000
heap
page read and write
216A000
heap
page read and write
91F000
stack
page read and write
2AF0000
direct allocation
page read and write
22B0000
direct allocation
page read and write
400000
unkown
page readonly
20CD000
heap
page read and write
401000
unkown
page execute read
2126000
heap
page read and write
42F000
unkown
page read and write
42F000
unkown
page write copy
20C1000
heap
page read and write
2D31000
heap
page read and write
55E000
heap
page read and write
20CD000
heap
page read and write
2126000
heap
page read and write
401000
unkown
page execute read
2BB1000
heap
page read and write
4EE000
stack
page read and write
20CD000
heap
page read and write
1F0000
heap
page read and write
2C30000
heap
page read and write
2349000
direct allocation
page read and write
550000
heap
page read and write
48E000
stack
page read and write
4F0000
heap
page read and write
22BA000
heap
page read and write
20CE000
heap
page read and write
22BD000
heap
page read and write
20DE000
heap
page read and write
20C6000
heap
page read and write
23C7000
heap
page read and write
20C5000
heap
page read and write
4A0000
heap
page read and write
435000
unkown
page readonly
2240000
direct allocation
page read and write
9C000
stack
page read and write
20E6000
heap
page read and write
20E4000
heap
page read and write
2DB0000
heap
page read and write
20E4000
heap
page read and write
2D30000
heap
page read and write
2DB1000
heap
page read and write
440000
heap
page read and write
81F000
stack
page read and write
20CE000
heap
page read and write
21AA000
heap
page read and write
55A000
heap
page read and write
2BF0000
heap
page read and write
31B0000
direct allocation
page read and write
212A000
heap
page read and write
435000
unkown
page readonly
20CD000
heap
page read and write
428000
unkown
page readonly
20C1000
heap
page read and write
20C1000
heap
page read and write
2E31000
heap
page read and write
400000
unkown
page readonly
20C0000
heap
page read and write
22A6000
heap
page read and write
20DA000
heap
page read and write
2126000
heap
page read and write
19D000
stack
page read and write
428000
unkown
page readonly
24D0000
heap
page read and write
3BB0000
direct allocation
page read and write
22A0000
heap
page read and write
There are 69 hidden memdumps, click here to show them.