Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'RadioRage Search Scope Monitor' = '"%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jsrchmn.exe" /m=2 /w /h'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'RadioRage_4j Browser Plugin Loader' = '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrmon.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'RadioRage' = 'rundll32 %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbar.dll,S'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'RadioRage Home Page Guard 32 bit' = '"%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\AppIntegrator.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\RadioRage_4jService] 'Start' = '00000002'
- '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jSrchMn.exe' /m=2 /w /h /r
- '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrmon.exe'
- '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhighin.exe' 4jtpinst.dll,#5
- '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbarsvc.exe' -remove
- '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbarsvc.exe' -install
- '%PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbarsvc.exe'
- '<SYSTEM32>\ntvdm.exe' -f -i3
- '<SYSTEM32>\ntvdm.exe' -f -i2
- '<SYSTEM32>\ntvdm.exe' -f -i1
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jmlbtn.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jPlugin.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jieovr.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jmedint.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jreghk.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jregiet.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jradio.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jregfft.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jidle.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jfeedmg.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhighin.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8EXTEX.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8EXTPEX.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhtmlmu.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhttpct.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhkstub.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8HTML.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jscript.dll
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs3.tmp
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\VERIFY.DLL
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs6.tmp
- %PROGRAM_FILES%\RadioRage_4j\bar\Settings\s_pid.dat
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs5.tmp
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\UNIFIEDLOGGING.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jSrcAs.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jSrchMn.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jskin.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jskplay.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jtpinst.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\TPIMANAGERCONSOLE.EXE
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jsrchmr.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8TICKER.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\ASSISTMONITOR.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\ASSISTMONITOR64.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\APPINTEGRATORSTUB.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\AppIntegratorStub64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\CREXT.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\CrExtP4j.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\BOOTSTRAP.JS
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\CHROME.MANIFEST
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\AppIntegrator64.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8RES.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbarsvc.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8EPMSUP.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\CONFIG.XML
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\APPINTEGRATOR.EXE
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\ARBITER64.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\DPNMNGR.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrmon64.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrstub.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbprtct.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrmon.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jdlghk.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jdlghk64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrstub64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jdatact.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbar.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\Hpg64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\INSTALL.RDF
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\EXEMANAGER.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\FF-NativeMessagingDispatcher.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jauxstb.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jauxstb64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\LOGO.BMP
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\NP4jStub.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jPlugin.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jradio.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jmedint.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jmlbtn.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jregiet.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jscript.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jregfft.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jreghk.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jieovr.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhighin.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhkstub.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8EXTPEX.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jfeedmg.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhttpct.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jidle.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8HTML.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jhtmlmu.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\ARBITER64.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\ASSIST.EXE
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\VERIFY.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\ARBITER.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8EPMSUP.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8RES.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\assists\ie_default_search_provider\CONFIG.XML
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbarsvc.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\UNIFIEDLOGGING.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jSrcAs.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jSrchMn.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jskin.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jskplay.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jtpinst.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\TPIMANAGERCONSOLE.EXE
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jsrchmr.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8TICKER.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\T8EXTEX.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\ASSISTMONITOR64.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\BOOTSTRAP.JS
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\AppIntegratorStub64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\ASSISTMONITOR.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\CrExtP4j.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\DPNMNGR.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\CHROME.MANIFEST
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\CREXT.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\APPINTEGRATORSTUB.DLL
- %WINDIR%\Temp\scs3.tmp
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\APPINTEGRATOR.EXE
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\AppIntegrator64.exe
- %WINDIR%\Temp\scs5.tmp
- %WINDIR%\Temp\scs6.tmp
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrmon64.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrstub.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbprtct.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrmon.exe
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jdlghk.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jdlghk64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbrstub64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jdatact.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jbar.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\Hpg64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\INSTALL.RDF
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\EXEMANAGER.DLL
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\FF-NativeMessagingDispatcher.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jauxstb.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\4jauxstb64.dll
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\LOGO.BMP
- %PROGRAM_FILES%\RadioRage_4j\bar\1.bin\NP4jStub.dll
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b94.b98.3a0001'
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b58.b5c.390001'
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b40.b44.380001'