List of the actions ElementsBrowserSetup efd2072ee95c45cd8c64577b4d40c939.exe executes on a user's PC
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\disable_extensions
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\Default Apps
new registry key created
%LOCALAPPDATA%\Elements Browser\Application\Elements\native_host.exe
new file created
%LOCALAPPDATA%\Elements Browser\Application\Elements\manifest.json
new file created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\silent_install
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\easy_install
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\client_id
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\installer_version
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\utm
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\instver
new registry key parameter created
%LOCALAPPDATA%\Elements Browser\Application\Elements
new catalogue created
HKEY_USERS\%ID-USER-SID%\Software\Google\Chrome\Extensions\ddadgcdmddljmpkpinkalnepdepplpkj\\install_parameter
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Google\Chrome\Extensions\ddadgcdmddljmpkpinkalnepdepplpkj\\update_url
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Google\Chrome\NativeMessagingHosts\org.infosoftware.ext_host
new registry key created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser
new registry key created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\installer_id
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\utmstr
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\userid
new registry key parameter created
%LOCALAPPDATA%\Elements Browser\Application
new catalogue created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware
new registry key created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware\Products
new registry key created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware\Products\ddadgcdmddljmpkpinkalnepdepplpkj
new registry key created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware\Products\ddadgcdmddljmpkpinkalnepdepplpkj\\name
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware\Products\ddadgcdmddljmpkpinkalnepdepplpkj\\utm
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware\Products\ddadgcdmddljmpkpinkalnepdepplpkj\\client_id
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\InfoSoftware\Products\ddadgcdmddljmpkpinkalnepdepplpkj\\timestamp
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Google\Chrome\Extensions\ddadgcdmddljmpkpinkalnepdepplpkj
new registry key created
%LOCALAPPDATA%\Elements Browser\Application\Elements\mini_installer.exe
file moved
%LOCALAPPDATA%\Elements Browser
new catalogue created
HKEY_USERS\%ID-USER-SID%\Software\Google\Chrome\NativeMessagingHosts
new registry key created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\desktop_shortcut
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\quicklaunch_shortcut
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\taskbar_shortcut
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\promo_shortcuts
new registry key parameter created
%LOCALAPPDATA%\Elements Browser\Application\params.json
new file created
HKEY_USERS\%ID-USER-SID%\Software\Elements Browser\\elementsbrowser_ver
new registry key parameter created
%APPDATA%\Microsoft\Windows\Cookies\KO6RYDIX.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\AW9ZVC75.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\05AEYL2U.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\WUZI9WXK.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\3NN1RJ5L.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\Z1XL0EGM.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\89C3YSUL.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\WSR945BV.txt
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\6f1\7DF657FA\\@%SystemRoot%\system32\qagentrt.dll,-10
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\6f1\7DF657FA\\@%SystemRoot%\system32\dnsapi.dll,-103
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\6f1\7DF657FA\\@%SystemRoot%\System32\fveui.dll,-843
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\6f1\7DF657FA\\@%SystemRoot%\System32\fveui.dll,-844
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\6f1\7DF657FA\\@%SystemRoot%\System32\wuaueng.dll,-400
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\6f1\7DF657FA\\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124
new registry key parameter created
%APPDATA%\Microsoft\Windows\Cookies\2NMGGUCI.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\YVCFYM6X.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\0I5FC6Q4.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\JE7M3XEN.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\NNYHVOCL.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\Y3HXDYBU.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\UUX14CVH.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\SCV0T2KI.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\GBLU7F9L.txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\P54N0275.txt
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\5CA\B1A07F78\\@%SystemRoot%\system32\p2pcollab.dll,-8042
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\5CA\B1A07F78\\@%SystemRoot%\system32\qagentrt.dll,-10
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\5CA\B1A07F78\\@%SystemRoot%\system32\dnsapi.dll,-103
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\5CA\B1A07F78\\@%SystemRoot%\System32\fveui.dll,-843
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\5CA\B1A07F78\\@%SystemRoot%\System32\fveui.dll,-844
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\5CA\B1A07F78\\@%SystemRoot%\System32\wuaueng.dll,-400
new registry key parameter created