General Info

URL

http://download.2345.com/2345pic/2345pic_v9.1.8384.up.lm.exe

Full analysis
https://app.any.run/tasks/c1538ff9-12fe-4a37-badb-724fb869e294
Verdict
Malicious activity
Analysis date
4/15/2019, 07:18:41
OS:
Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Tags:

loader

adware

Indicators:

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distored by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.

Software environment set and analysis options

Launch configuration

Task duration
120 seconds
Additional time used
60 seconds
Fakenet option
off
Heavy Evaision option
off
MITM proxy
off
Route via Tor
off
Network geolocation
off
Privacy
Public submission
Autoconfirmation of UAC
on

Software preset

  • Internet Explorer 8.0.7601.17514
  • Adobe Acrobat Reader DC MUI (15.023.20070)
  • Adobe Flash Player 26 ActiveX (26.0.0.131)
  • Adobe Flash Player 26 NPAPI (26.0.0.131)
  • Adobe Flash Player 26 PPAPI (26.0.0.131)
  • Adobe Refresh Manager (1.8.0)
  • CCleaner (5.35)
  • FileZilla Client 3.36.0 (3.36.0)
  • Google Chrome (73.0.3683.75)
  • Google Update Helper (1.3.33.23)
  • Java 8 Update 92 (8.0.920.14)
  • Java Auto Updater (2.8.92.14)
  • Microsoft .NET Framework 4.6.1 (4.6.01055)
  • Microsoft Office Access MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Access Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office OneNote MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Outlook MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office PowerPoint MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Professional 2010 (14.0.6029.1000)
  • Microsoft Office Proof (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (French) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Spanish) 2010 (14.0.6029.1000)
  • Microsoft Office Proofing (English) 2010 (14.0.6029.1000)
  • Microsoft Office Publisher MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Single Image 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (9.0.30729.6161)
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (10.0.40219)
  • Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (12.0.30501.0)
  • Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (14.15.26706.0)
  • Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 (14.15.26706)
  • Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 (14.15.26706)
  • Mozilla Firefox 65.0.2 (x86 en-US) (65.0.2)
  • Notepad++ (32-bit x86) (7.5.1)
  • Opera 12.15 (12.15.1748)
  • Skype version 8.29 (8.29)
  • VLC media player (2.2.6)
  • WinRAR 5.60 (32-bit) (5.60.0)

Hotfixes

  • Client LanguagePack Package
  • Client Refresh LanguagePack Package
  • CodecPack Basic Package
  • Foundation Package
  • IE Troubleshooters Package
  • InternetExplorer Optional Package
  • KB2534111
  • KB2999226
  • KB976902
  • LocalPack AU Package
  • LocalPack CA Package
  • LocalPack GB Package
  • LocalPack US Package
  • LocalPack ZA Package
  • ProfessionalEdition
  • UltimateEdition

Behavior activities

MALICIOUS SUSPICIOUS INFO
Application was dropped or rewritten from another process
  • 2345PicLoader.exe (PID: 2868)
  • 2345PicUpdate.exe (PID: 1248)
  • 2345PicLoader.exe (PID: 2764)
  • ServiceManager.exe (PID: 1336)
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
  • 2345PicLoader.exe (PID: 916)
  • 2345pic_v9.1.8384.up.lm.exe (PID: 1560)
  • 2345PicLoader.exe (PID: 1240)
  • Pic_2345Svc.exe (PID: 2804)
  • 2345PicUpdate.exe (PID: 2444)
  • 2345PicUpdate.exe (PID: 3596)
  • 2345PicUpdate.exe (PID: 1500)
  • 2345PicUpdate.exe (PID: 1308)
  • 2345PicLoader.exe (PID: 1964)
  • 2345PicViewer.exe (PID: 1472)
Loads dropped or rewritten executable
  • 2345PicUpdate.exe (PID: 1248)
  • 2345PicLoader.exe (PID: 2868)
  • 2345PicLoader.exe (PID: 2764)
  • 2345PicLoader.exe (PID: 916)
  • 2345PicUpdate.exe (PID: 2444)
  • 2345PicUpdate.exe (PID: 1308)
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
  • 2345PicUpdate.exe (PID: 3596)
  • 2345PicUpdate.exe (PID: 1500)
  • Pic_2345Svc.exe (PID: 2804)
  • 2345PicLoader.exe (PID: 1964)
  • 2345PicViewer.exe (PID: 1472)
  • 2345PicLoader.exe (PID: 1240)
Loads the Task Scheduler COM API
  • 2345PicLoader.exe (PID: 1240)
Downloads executable files from the Internet
  • chrome.exe (PID: 3620)
Changes settings of System certificates
  • 2345PicLoader.exe (PID: 1240)
Creates files in the user directory
  • 2345PicUpdate.exe (PID: 1308)
  • 2345PicLoader.exe (PID: 916)
  • 2345PicUpdate.exe (PID: 1248)
  • 2345PicUpdate.exe (PID: 2444)
  • 2345PicLoader.exe (PID: 2868)
  • 2345PicLoader.exe (PID: 2764)
  • 2345PicLoader.exe (PID: 1964)
  • 2345PicUpdate.exe (PID: 3596)
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
  • 2345PicViewer.exe (PID: 1472)
  • 2345PicUpdate.exe (PID: 1500)
  • 2345PicLoader.exe (PID: 1240)
Executable content was dropped or overwritten
  • chrome.exe (PID: 3360)
  • chrome.exe (PID: 3620)
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
Adds / modifies Windows certificates
  • 2345PicLoader.exe (PID: 1240)
Application launched itself
  • 2345PicLoader.exe (PID: 1240)
Creates files in the program directory
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
  • Pic_2345Svc.exe (PID: 2804)
Creates a software uninstall entry
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
Creates COM task schedule object
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
Modifies the open verb of a shell class
  • 2345PicLoader.exe (PID: 1240)
Reads settings of System Certificates
  • 2345pic_v9.1.8384.up.lm.exe (PID: 2772)
  • chrome.exe (PID: 3620)
Application launched itself
  • chrome.exe (PID: 3360)

Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report

Screenshots

Processes

Total processes
62
Monitored processes
26
Malicious processes
8
Suspicious processes
5

Behavior graph

+
drop and start drop and start start drop and start drop and start drop and start drop and start drop and start drop and start chrome.exe chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs 2345pic_v9.1.8384.up.lm.exe no specs 2345pic_v9.1.8384.up.lm.exe 2345picloader.exe no specs servicemanager.exe no specs 2345picloader.exe no specs 2345picupdate.exe pic_2345svc.exe no specs 2345picupdate.exe no specs chrome.exe no specs chrome.exe no specs 2345picviewer.exe 2345picloader.exe no specs 2345picupdate.exe 2345picupdate.exe 2345picupdate.exe 2345picloader.exe no specs 2345picloader.exe
Specs description
Program did not start
Integrity level elevation
Task сontains an error or was rebooted
Process has crashed
Task contains several apps running
Executable file was dropped
Debug information is available
Process was injected
Network attacks were detected
Application downloaded the executable file
Actions similar to stealing personal data
Behavior similar to exploiting the vulnerability
Inspected object has sucpicious PE structure
File is detected by antivirus software
CPU overrun
RAM overrun
Process starts the services
Process was added to the startup
Behavior similar to spam
Low-level access to the HDD
Probably Tor was used
System was rebooted
Connects to the network
Known threat

Process information

Click at the process to see the details.

PID
3360
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" http://download.2345.com/2345pic/2345pic_v9.1.8384.up.lm.exe
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\ole32.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\netutils.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\wkscli.dll
c:\windows\system32\samcli.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\oleacc.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\hid.dll
c:\windows\system32\propsys.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\winusb.dll
c:\windows\system32\msi.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\gpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\dhcpcsvc6.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wlanapi.dll
c:\windows\system32\wlanutil.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\wpc.dll
c:\windows\system32\samlib.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\firewallapi.dll
c:\windows\system32\kbdus.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\windowscodecs.dll
c:\windows\system32\linkinfo.dll
c:\windows\system32\ehstorshell.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\cscui.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\cscapi.dll
c:\windows\system32\wship6.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\slc.dll
c:\windows\system32\imageres.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\mssprxy.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\shdocvw.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\rasadhlp.dll
c:\users\admin\downloads\2345pic_v9.1.8384.up.lm.exe
c:\windows\system32\mpr.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\devrtl.dll

PID
3388
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\admin\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\admin\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\admin\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=73.0.3683.75 --initial-client-data=0x7c,0x80,0x84,0x78,0x88,0x6fa90f18,0x6fa90f28,0x6fa90f34
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\kernel32.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\usp10.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\cryptbase.dll

PID
2608
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=3364 --on-initialized-event-handle=308 --parent-handle=312 /prefetch:6
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\ole32.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_watcher.dll

PID
3504
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --gpu-preferences=KAAAAAAAAACAAwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=8016973629193070172 --mojo-platform-channel-handle=936 --ignored=" --type=renderer " /prefetch:2
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
LOW
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\msmpeg2vdec.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\slc.dll
c:\windows\system32\sqmapi.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\dxva2.dll
c:\program files\google\chrome\application\73.0.3683.75\d3dcompiler_47.dll
c:\windows\system32\ddraw.dll
c:\windows\system32\dciman32.dll
c:\program files\google\chrome\application\73.0.3683.75\swiftshader\libglesv2.dll
c:\program files\google\chrome\application\73.0.3683.75\swiftshader\libegl.dll

PID
3620
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --lang=en-US --service-sandbox-type=network --service-request-channel-token=13333574489058329730 --mojo-platform-channel-handle=1508 /prefetch:8
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
Parent process
chrome.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\kernel32.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\dhcpcsvc6.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wship6.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\fwpuclnt.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\gpapi.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\cryptnet.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\ntmarta.dll

PID
2300
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --service-pipe-token=14653279280412748734 --lang=en-US --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=14653279280412748734 --renderer-client-id=6 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2036 /prefetch:1
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
LOW
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll

PID
2644
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --service-pipe-token=17795661986974391667 --lang=en-US --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=17795661986974391667 --renderer-client-id=5 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=2056 /prefetch:1
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
LOW
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll

PID
2860
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --service-pipe-token=12133985021958363888 --lang=en-US --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --service-request-channel-token=12133985021958363888 --renderer-client-id=4 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=1932 /prefetch:1
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
LOW
Exit code
0
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll

PID
1080
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --disable-gpu-sandbox --use-gl=disabled --gpu-preferences=KAAAAAAAAACAAwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=3667787639575394952 --mojo-platform-channel-handle=1516 /prefetch:2
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
MEDIUM
Exit code
0
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\msmpeg2vdec.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\slc.dll
c:\windows\system32\sqmapi.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\dxva2.dll

PID
1560
CMD
"C:\Users\admin\Downloads\2345pic_v9.1.8384.up.lm.exe"
Path
C:\Users\admin\Downloads\2345pic_v9.1.8384.up.lm.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
MEDIUM
Exit code
3221226540
Version:
Company
2345移动科技
Description
2345看图王 v9.1 安装程序
Version
9.1.2.8384
Modules
Image
c:\users\admin\downloads\2345pic_v9.1.8384.up.lm.exe
c:\systemroot\system32\ntdll.dll

PID
2772
CMD
"C:\Users\admin\Downloads\2345pic_v9.1.8384.up.lm.exe"
Path
C:\Users\admin\Downloads\2345pic_v9.1.8384.up.lm.exe
Indicators
Parent process
chrome.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王 v9.1 安装程序
Version
9.1.2.8384
Modules
Image
c:\users\admin\downloads\2345pic_v9.1.8384.up.lm.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\propsys.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\version.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\users\admin\appdata\local\temp\nsmc7d8.tmp\fileinfo.dll
c:\windows\system32\riched20.dll
c:\users\admin\appdata\local\temp\nsmc7d8.tmp\rcwidgetplugin.dll
c:\windows\system32\msimg32.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\winmm.dll
c:\windows\system32\windowscodecs.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll
c:\users\admin\appdata\local\temp\nsmc7d8.tmp\system.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\devrtl.dll
c:\program files\2345soft\2345pic\2345imagethumb.dll
c:\program files\2345soft\2345pic\freeimageplus.dll
c:\program files\2345soft\2345pic\freeimage.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\program files\2345soft\2345pic\2345picloader.exe
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\program files\2345soft\2345pic\tool\2345instdll.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\psapi.dll
c:\program files\2345soft\2345pic\2345picviewer.exe
c:\windows\system32\wintrust.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\gpapi.dll
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\netutils.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\wkscli.dll
c:\program files\internet explorer\iexplore.exe
c:\windows\system32\mshtml.dll
c:\windows\system32\linkinfo.dll

PID
1240
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe" -install 6
Path
C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe
Indicators
No indicators
Parent process
2345pic_v9.1.8384.up.lm.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-引擎加载程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picloader.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\gpapi.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\linkinfo.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\cscapi.dll
c:\windows\system32\slc.dll
c:\program files\2345soft\2345pic\2345pic.exe
c:\program files\2345soft\2345pic\2345picviewer.exe
c:\program files\2345soft\2345pic\2345piceditor.exe
c:\program files\2345soft\2345pic\2345pdfreader.exe
c:\windows\system32\apphelp.dll
c:\program files\2345soft\2345pic\protect\servicemanager.exe
c:\windows\system32\taskschd.dll
c:\windows\system32\xmllite.dll
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\windows\system32\firewallapi.dll
c:\windows\system32\version.dll
c:\windows\system32\netutils.dll

PID
1336
CMD
"C:\Program Files\2345Soft\2345Pic\protect\ServiceManager.exe" install "C:\Program Files\2345Soft\2345Pic\protect\Pic_2345Svc.exe"
Path
C:\Program Files\2345Soft\2345Pic\protect\ServiceManager.exe
Indicators
No indicators
Parent process
2345PicLoader.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王核心服务
Version
10.1.0.451
Modules
Image
c:\program files\2345soft\2345pic\protect\servicemanager.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\gpapi.dll

PID
1964
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe" --rescue --invoke-point=1
Path
C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe
Indicators
No indicators
Parent process
2345PicLoader.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-引擎加载程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picloader.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\gpapi.dll

PID
1500
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe" -update-force-config
Path
C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe
Indicators
Parent process
2345PicLoader.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-在线升级程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\program files\2345soft\2345pic\2345directui.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\netutils.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\wkscli.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\version.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\gpapi.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\program files\internet explorer\iexplore.exe
c:\windows\system32\mshtml.dll
c:\program files\2345soft\2345pic\2345picviewer.exe
c:\windows\system32\linkinfo.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll
c:\program files\2345soft\2345pic\tool\2345instui.dll

PID
2804
CMD
"C:\Program Files\2345Soft\2345Pic\protect\Pic_2345Svc.exe"
Path
C:\Program Files\2345Soft\2345Pic\protect\Pic_2345Svc.exe
Indicators
No indicators
Parent process
––
User
SYSTEM
Integrity Level
SYSTEM
Version:
Company
2345移动科技
Description
2345看图王核心服务
Version
10.1.0.451
Modules
Image
c:\program files\2345soft\2345pic\protect\pic_2345svc.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\program files\2345soft\2345pic\protect\pic_2345svc.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\netutils.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\wkscli.dll
c:\windows\system32\samcli.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\psapi.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\gpapi.dll
c:\windows\system32\cryptnet.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\shlwapi.dll

PID
3596
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe" -statFeatureFlag-upgrade__
Path
C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe
Indicators
No indicators
Parent process
2345pic_v9.1.8384.up.lm.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-在线升级程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\gpapi.dll
c:\program files\2345soft\2345pic\2345directui.dll

PID
3280
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --lang=en-US --no-sandbox --service-request-channel-token=1310628879431188779 --mojo-platform-channel-handle=1864 /prefetch:8
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
MEDIUM
Exit code
0
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\linkinfo.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\shdocvw.dll
c:\windows\system32\twext.dll
c:\windows\system32\cscui.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\cscapi.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\sendmail.dll
c:\windows\system32\zipfldr.dll
c:\windows\system32\fxsresm.dll
c:\program files\winrar\rarext.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\windowscodecs.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\slc.dll
c:\windows\system32\syncui.dll
c:\windows\system32\synceng.dll
c:\program files\notepad++\nppshell_06.dll
c:\windows\system32\acppage.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\msi.dll
c:\windows\system32\wer.dll
c:\windows\system32\devrtl.dll
c:\windows\system32\netutils.dll

PID
352
CMD
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=952,16757165573614761929,13464838209277135556,131072 --enable-features=PasswordImport --lang=en-US --service-sandbox-type=utility --service-request-channel-token=1295559183487360028 --mojo-platform-channel-handle=2764 --ignored=" --type=renderer " /prefetch:8
Path
C:\Program Files\Google\Chrome\Application\chrome.exe
Indicators
No indicators
Parent process
chrome.exe
User
admin
Integrity Level
LOW
Exit code
0
Version:
Company
Google Inc.
Description
Google Chrome
Version
73.0.3683.75
Modules
Image
c:\program files\google\chrome\application\chrome.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\winmm.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\google\chrome\application\73.0.3683.75\chrome_child.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\winspool.drv
c:\windows\system32\dbghelp.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\webio.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\wininet.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\secur32.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\cryptbase.dll

PID
1472
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" -restart-picviewer
Path
C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe
Indicators
Parent process
2345pic_v9.1.8384.up.lm.exe
User
admin
Integrity Level
HIGH
Version:
Company
2345移动科技
Description
2345看图王
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picviewer.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\program files\2345soft\2345pic\2345directui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\ncrypt.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\gpapi.dll
c:\program files\2345soft\2345pic\2345image.dll
c:\program files\2345soft\2345pic\freeimage.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\2345soft\2345pic\freeimageplus.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\windowscodecs.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\version.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll
c:\windows\system32\apphelp.dll
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\program files\common files\microsoft shared\ink\tiptsf.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\ehstorshell.dll
c:\windows\system32\cscui.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\cscapi.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\slc.dll
c:\windows\system32\imageres.dll
c:\windows\system32\xmllite.dll
c:\windows\system32\msftedit.dll
c:\windows\system32\msls31.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\structuredquery.dll
c:\windows\system32\secur32.dll
c:\windows\system32\actxprxy.dll
c:\program files\internet explorer\ieproxy.dll
c:\windows\system32\mpr.dll
c:\windows\system32\drprov.dll
c:\windows\system32\winsta.dll
c:\windows\system32\ntlanman.dll
c:\windows\system32\davclnt.dll
c:\windows\system32\davhlpr.dll
c:\windows\system32\wkscli.dll
c:\windows\system32\netutils.dll
c:\windows\system32\thumbcache.dll
c:\windows\system32\wpdshext.dll
c:\windows\system32\shdocvw.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\portabledeviceapi.dll
c:\windows\system32\audiodev.dll
c:\windows\system32\wmvcore.dll
c:\windows\system32\wmasf.dll
c:\windows\system32\ehstorapi.dll
c:\windows\system32\searchfolder.dll
c:\windows\system32\linkinfo.dll
c:\windows\system32\networkexplorer.dll
c:\windows\system32\mctres.dll
c:\windows\ehome\ehepgres.dll
c:\windows\system32\sampleres.dll
c:\windows\system32\mssvp.dll
c:\windows\system32\mapi32.dll
c:\windows\system32\mssprxy.dll

PID
916
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe" -statistics o54;u104;u70
Path
C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe
Indicators
No indicators
Parent process
2345pic_v9.1.8384.up.lm.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-引擎加载程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picloader.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll

PID
1308
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe" -update
Path
C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe
Indicators
Parent process
2345PicViewer.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-在线升级程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\program files\2345soft\2345pic\2345directui.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\netutils.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\wkscli.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbemcomn.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll
c:\windows\system32\version.dll
c:\program files\2345soft\2345pic\2345picviewer.exe
c:\windows\system32\apphelp.dll

PID
2444
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe" -update-cloud-config
Path
C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe
Indicators
Parent process
2345PicViewer.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-在线升级程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\program files\2345soft\2345pic\2345directui.dll
c:\program files\2345soft\2345pic\tool\2345instui.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\version.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll

PID
1248
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe" -SendUIStatNow
Path
C:\Program Files\2345Soft\2345Pic\2345PicUpdate.exe
Indicators
Parent process
2345pic_v9.1.8384.up.lm.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-在线升级程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picupdate.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\program files\2345soft\2345pic\2345directui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\nsi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\netutils.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\wkscli.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\version.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\program files\internet explorer\iexplore.exe
c:\windows\system32\mshtml.dll
c:\program files\2345soft\2345pic\2345picviewer.exe
c:\windows\system32\linkinfo.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll

PID
2764
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe" --fix --channel-name=P --channel-id=100011 --flag=1 --product=00000000
Path
C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe
Indicators
No indicators
Parent process
2345pic_v9.1.8384.up.lm.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-引擎加载程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picloader.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll

PID
2868
CMD
"C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe" --rescue --invoke-point=0 --rescue-self
Path
C:\Program Files\2345Soft\2345Pic\2345PicLoader.exe
Indicators
Parent process
2345PicUpdate.exe
User
admin
Integrity Level
HIGH
Exit code
0
Version:
Company
2345移动科技
Description
2345看图王-引擎加载程序
Version
9.1.2.8384
Modules
Image
c:\program files\2345soft\2345pic\2345picloader.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\ole32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\2345soft\2345pic\msvcr120.dll
c:\program files\2345soft\2345pic\msvcp120.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\cryptbase.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\propsys.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\program files\2345soft\2345pic\2345imageapp.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\version.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\fwpuclnt.dll

Registry activity

Total events
3834
Read events
2512
Write events
1321
Delete events
1

Modification events

PID
Process
Operation
Key
Name
Value
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASAPI32
EnableFileTracing
0
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASAPI32
EnableConsoleTracing
0
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASAPI32
FileTracingMask
4294901760
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASAPI32
ConsoleTracingMask
4294901760
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASAPI32
MaxFileSize
1048576
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASAPI32
FileDirectory
%windir%\tracing
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASMANCS
EnableFileTracing
0
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASMANCS
EnableConsoleTracing
0
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASMANCS
FileTracingMask
4294901760
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASMANCS
ConsoleTracingMask
4294901760
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASMANCS
MaxFileSize
1048576
2868
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicLoader_RASMANCS
FileDirectory
%windir%\tracing
2868
2345PicLoader.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2868
2345PicLoader.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
2868
2345PicLoader.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
2868
2345PicLoader.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
1964
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
2608
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\BrowserExitCodes
3360-13199779135697375
259
3620
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\2345.com\2345Pic
InstallBy
chrome.exe;explorer.exe 18962
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\2345.com\2345Pic
UpgradeBy
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\2345.com\2345Pic
UninstallBy
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASAPI32
EnableFileTracing
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASAPI32
EnableConsoleTracing
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASAPI32
FileTracingMask
4294901760
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASAPI32
ConsoleTracingMask
4294901760
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASAPI32
MaxFileSize
1048576
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASAPI32
FileDirectory
%windir%\tracing
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASMANCS
EnableFileTracing
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASMANCS
EnableConsoleTracing
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASMANCS
FileTracingMask
4294901760
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASMANCS
ConsoleTracingMask
4294901760
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASMANCS
MaxFileSize
1048576
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345pic_v9_RASMANCS
FileDirectory
%windir%\tracing
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
4600000072000000010000000000000000000000000000000000000000000000C0E333BBEAB1D301000000000000000000000000020000001700000000000000FE800000000000007D6CB050D9C573F70B000000000000006D00330032005C004D00530049004D004700330032002E0064006C000100000004AA400014AA4000040000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000002000000C0A8016400000000000000000000000000000000000000000800000000000000805D3F00983740000008000002000000000000600000002060040000B8A94000020000008802000060040000B8A9400004000000F8010000B284000088B64000B84B400043003A000000000000000000000000000000000000000000
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE421D53-8625-4E1A-BD04-27904612B7EF}
Extract Handler Class
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE421D53-8625-4E1A-BD04-27904612B7EF}\InprocServer32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE421D53-8625-4E1A-BD04-27904612B7EF}\InprocServer32
ThreadingModel
Apartment
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE421D53-8625-4E1A-BD04-27904612B7EF}\TypeLib
{A80022F5-81D2-4F37-AF33-4D79862DC6E9}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE421D53-8625-4E1A-BD04-27904612B7EF}\Version
1.0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.ai\ShellEx\{BB2E617C-0920-11d1-9A0B-00C04FC2D6C1}
{BE421D53-8625-4E1A-BD04-27904612B7EF}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75F9C120-AE93-4372-ACCA-8BF6BB613A02}
Extract Handler Class
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75F9C120-AE93-4372-ACCA-8BF6BB613A02}\InprocServer32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75F9C120-AE93-4372-ACCA-8BF6BB613A02}\InprocServer32
ThreadingModel
Apartment
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75F9C120-AE93-4372-ACCA-8BF6BB613A02}\TypeLib
{A80022F5-81D2-4F37-AF33-4D79862DC6E9}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75F9C120-AE93-4372-ACCA-8BF6BB613A02}\Version
1.0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.psd\ShellEx\{BB2E617C-0920-11d1-9A0B-00C04FC2D6C1}
{75F9C120-AE93-4372-ACCA-8BF6BB613A02}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FF5222-38A4-487E-A298-2DCB51EE9E06}
Extract Handler Class
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FF5222-38A4-487E-A298-2DCB51EE9E06}\InprocServer32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FF5222-38A4-487E-A298-2DCB51EE9E06}\InprocServer32
ThreadingModel
Apartment
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FF5222-38A4-487E-A298-2DCB51EE9E06}\TypeLib
{A80022F5-81D2-4F37-AF33-4D79862DC6E9}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08FF5222-38A4-487E-A298-2DCB51EE9E06}\Version
1.0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.tbi\ShellEx\{BB2E617C-0920-11d1-9A0B-00C04FC2D6C1}
{08FF5222-38A4-487E-A298-2DCB51EE9E06}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC1A7D5-2CDB-4352-B3EE-67C02E369742}
Thumbnail Handler Class
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC1A7D5-2CDB-4352-B3EE-67C02E369742}\InprocServer32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC1A7D5-2CDB-4352-B3EE-67C02E369742}\InprocServer32
ThreadingModel
Apartment
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC1A7D5-2CDB-4352-B3EE-67C02E369742}\TypeLib
{A80022F5-81D2-4F37-AF33-4D79862DC6E9}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DDC1A7D5-2CDB-4352-B3EE-67C02E369742}\Version
1.0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.ai\ShellEx\{E357FCCD-A995-4576-B01F-234630154E96}
{DDC1A7D5-2CDB-4352-B3EE-67C02E369742}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CBABD20-3F81-4E0D-B45E-CD8C78C53590}
Thumbnail Handler Class
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CBABD20-3F81-4E0D-B45E-CD8C78C53590}\InprocServer32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CBABD20-3F81-4E0D-B45E-CD8C78C53590}\InprocServer32
ThreadingModel
Apartment
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CBABD20-3F81-4E0D-B45E-CD8C78C53590}\TypeLib
{A80022F5-81D2-4F37-AF33-4D79862DC6E9}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6CBABD20-3F81-4E0D-B45E-CD8C78C53590}\Version
1.0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.tbi\ShellEx\{E357FCCD-A995-4576-B01F-234630154E96}
{6CBABD20-3F81-4E0D-B45E-CD8C78C53590}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F45976A-9305-4A2F-85B3-E950C29436AA}
Thumbnail Handler Class
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F45976A-9305-4A2F-85B3-E950C29436AA}\InprocServer32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F45976A-9305-4A2F-85B3-E950C29436AA}\InprocServer32
ThreadingModel
Apartment
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F45976A-9305-4A2F-85B3-E950C29436AA}\TypeLib
{A80022F5-81D2-4F37-AF33-4D79862DC6E9}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1F45976A-9305-4A2F-85B3-E950C29436AA}\Version
1.0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.psd\ShellEx\{E357FCCD-A995-4576-B01F-234630154E96}
{1F45976A-9305-4A2F-85B3-E950C29436AA}
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A80022F5-81D2-4F37-AF33-4D79862DC6E9}\1.0
ThumbnailLib
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A80022F5-81D2-4F37-AF33-4D79862DC6E9}\1.0\FLAGS
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A80022F5-81D2-4F37-AF33-4D79862DC6E9}\1.0\0\win32
C:\Program Files\2345Soft\2345Pic\2345ImageThumb.dll
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A80022F5-81D2-4F37-AF33-4D79862DC6E9}\1.0\HELPDIR
C:\Program Files\2345Soft\2345Pic
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic
Value1
0
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic
Value2
4
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic
Value
003010093400301035607310050703
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic
Path
C:\Program Files\2345Soft\2345Pic
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2345Pic
DisplayName
看图王 - 2345
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2345Pic
UninstallString
C:\Program Files\2345Soft\2345Pic\Uninstall.exe
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2345Pic
DisplayIcon
C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2345Pic
DisplayVersion
v9.1
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2345Pic
URLInfoAbout
http://pic.2345.cc
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\2345Pic
Publisher
2345移动科技
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\2345PicViewer.exe
C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\2345PicViewer.exe
Path
C:\Program Files\2345Soft\2345Pic
2772
2345pic_v9.1.8384.up.lm.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\91C6D6EE3E8AC86384E548C299295C756C817B81
Blob
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
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\91C6D6EE3E8AC86384E548C299295C756C817B81
Blob
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
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities
ApplicationDescription
2345看图王
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\RegisteredApplications
2345Pic
SOFTWARE\2345Pic\Capabilities
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.bmp
2345Pic.bmp
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.dib
2345Pic.dib
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.ico
2345Pic.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.cur
2345Pic.cur
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jpg
2345Pic.jpg
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jpeg
2345Pic.jpeg
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jpe
2345Pic.jpe
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jfif
2345Pic.jfif
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jng
2345Pic.jng
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.koa
2345Pic.koa
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.iff
2345Pic.iff
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.lbm
2345Pic.lbm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.mng
2345Pic.mng
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pcd
2345Pic.pcd
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pcx
2345Pic.pcx
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.png
2345Pic.png
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.ras
2345Pic.ras
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.tga
2345Pic.tga
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.targa
2345Pic.targa
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.tif
2345Pic.tif
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.tiff
2345Pic.tiff
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.wap
2345Pic.wap
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.wbmp
2345Pic.wbmp
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.wbm
2345Pic.wbm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.psd
2345Pic.psd
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.cut
2345Pic.cut
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.xbm
2345Pic.xbm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.xpm
2345Pic.xpm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.dds
2345Pic.dds
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.gif
2345Pic.gif
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.hdr
2345Pic.hdr
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.g3
2345Pic.g3
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.sgi
2345Pic.sgi
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.exr
2345Pic.exr
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.j2k
2345Pic.j2k
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.j2c
2345Pic.j2c
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jp2
2345Pic.jp2
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pfm
2345Pic.pfm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pct
2345Pic.pct
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pict
2345Pic.pict
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pic
2345Pic.pic
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.raw
2345Pic.raw
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.3fr
2345Pic.3fr
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.arw
2345Pic.arw
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.bay
2345Pic.bay
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.bmq
2345Pic.bmq
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.cap
2345Pic.cap
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.cine
2345Pic.cine
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.cr2
2345Pic.cr2
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.crw
2345Pic.crw
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.cs1
2345Pic.cs1
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.dc2
2345Pic.dc2
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.dcr
2345Pic.dcr
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.dng
2345Pic.dng
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.drf
2345Pic.drf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.dsc
2345Pic.dsc
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.fff
2345Pic.fff
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.ia
2345Pic.ia
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.iiq
2345Pic.iiq
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.k25
2345Pic.k25
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.kc2
2345Pic.kc2
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.kdc
2345Pic.kdc
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.mdc
2345Pic.mdc
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.mef
2345Pic.mef
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.mos
2345Pic.mos
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.mrw
2345Pic.mrw
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.nef
2345Pic.nef
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.nrw
2345Pic.nrw
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.orf
2345Pic.orf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pef
2345Pic.pef
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.ptx
2345Pic.ptx
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pxn
2345Pic.pxn
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.qtk
2345Pic.qtk
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.raf
2345Pic.raf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.rdc
2345Pic.rdc
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.rw2
2345Pic.rw2
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.rwz
2345Pic.rwz
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.sr2
2345Pic.sr2
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.srf
2345Pic.srf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.sti
2345Pic.sti
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.x3f
2345Pic.x3f
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.wmf
2345Pic.wmf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.emf
2345Pic.emf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.jpc
2345Pic.jpc
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pgx
2345Pic.pgx
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pnm
2345Pic.pnm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pgm
2345Pic.pgm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pbm
2345Pic.pbm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.ppm
2345Pic.ppm
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.ska
2345Pic.ska
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.webp
2345Pic.webp
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.wdp
2345Pic.wdp
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.tbi
2345Pic.tbi
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\2345Pic\Capabilities\FileAssociations
.pdf
2345Pic.pdf
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bmp
看图王 BMP 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bmp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\bmp.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bmp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bmp
看图王 BMP 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bmp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\bmp.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bmp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dib
看图王 DIB 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dib\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\bmp.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dib\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dib
看图王 DIB 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dib\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\bmp.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dib\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ico
看图王 ICO 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ico\DefaultIcon
%1
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ico\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ico
看图王 ICO 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ico\DefaultIcon
%1
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ico\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cur
看图王 CUR 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cur\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cur\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cur
看图王 CUR 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cur\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cur\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpg
看图王 JPG 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpg\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\jpg.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpg\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpg
看图王 JPG 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpg\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\jpg.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpg\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpeg
看图王 JPEG 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpeg\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\jpg.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpeg\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpeg
看图王 JPEG 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpeg\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\jpg.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpeg\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpe
看图王 JPE 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpe\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\jpg.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpe\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpe
看图王 JPE 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpe\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\jpg.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpe\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jfif
看图王 JFIF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jfif\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jfif\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jfif
看图王 JFIF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jfif\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jfif\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jng
看图王 JNG 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jng\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jng\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jng
看图王 JNG 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jng\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jng\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.koa
看图王 KOA 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.koa\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.koa\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.koa
看图王 KOA 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.koa\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.koa\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.iff
看图王 IFF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.iff\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.iff\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.iff
看图王 IFF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.iff\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.iff\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.lbm
看图王 LBM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.lbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.lbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.lbm
看图王 LBM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.lbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.lbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mng
看图王 MNG 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mng\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mng\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mng
看图王 MNG 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mng\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mng\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pcd
看图王 PCD 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pcd\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pcd\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pcd
看图王 PCD 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pcd\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pcd\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pcx
看图王 PCX 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pcx\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pcx\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pcx
看图王 PCX 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pcx\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pcx\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.png
看图王 PNG 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.png\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\png.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.png\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.png
看图王 PNG 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.png\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\png.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.png\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ras
看图王 RAS 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ras\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ras\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ras
看图王 RAS 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ras\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ras\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tga
看图王 TGA 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tga\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tga\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tga
看图王 TGA 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tga\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tga\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.targa
看图王 TARGA 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.targa\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.targa\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.targa
看图王 TARGA 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.targa\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.targa\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tif
看图王 TIF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tif\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\tif.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tif\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tif
看图王 TIF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tif\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\tif.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tif\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tiff
看图王 TIFF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tiff\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\tif.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tiff\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tiff
看图王 TIFF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tiff\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\tif.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tiff\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wap
看图王 WAP 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wap\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wap\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wap
看图王 WAP 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wap\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wap\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wbmp
看图王 WBMP 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wbmp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wbmp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wbmp
看图王 WBMP 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wbmp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wbmp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wbm
看图王 WBM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wbm
看图王 WBM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.psd
看图王 PSD 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.psd\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\psd.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.psd\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.psd
看图王 PSD 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.psd\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\psd.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.psd\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cut
看图王 CUT 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cut\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cut\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cut
看图王 CUT 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cut\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cut\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.xbm
看图王 XBM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.xbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.xbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.xbm
看图王 XBM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.xbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.xbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.xpm
看图王 XPM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.xpm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.xpm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.xpm
看图王 XPM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.xpm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.xpm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dds
看图王 DDS 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dds\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dds\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dds
看图王 DDS 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dds\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dds\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.gif
看图王 GIF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.gif\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\gif.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.gif\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.gif
看图王 GIF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.gif\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\gif.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.gif\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.hdr
看图王 HDR 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.hdr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.hdr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.hdr
看图王 HDR 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.hdr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.hdr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.g3
看图王 G3 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.g3\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.g3\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.g3
看图王 G3 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.g3\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.g3\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sgi
看图王 SGI 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sgi\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sgi\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sgi
看图王 SGI 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sgi\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sgi\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.exr
看图王 EXR 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.exr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.exr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.exr
看图王 EXR 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.exr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.exr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.j2k
看图王 J2K 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.j2k\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.j2k\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.j2k
看图王 J2K 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.j2k\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.j2k\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.j2c
看图王 J2C 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.j2c\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.j2c\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.j2c
看图王 J2C 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.j2c\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.j2c\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jp2
看图王 JP2 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jp2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jp2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jp2
看图王 JP2 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jp2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jp2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pfm
看图王 PFM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pfm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pfm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pfm
看图王 PFM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pfm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pfm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pct
看图王 PCT 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pct\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pct\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pct
看图王 PCT 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pct\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pct\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pict
看图王 PICT 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pict\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pict\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pict
看图王 PICT 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pict\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pict\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pic
看图王 PIC 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pic\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pic\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pic
看图王 PIC 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pic\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pic\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.raw
看图王 RAW 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.raw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.raw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.raw
看图王 RAW 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.raw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.raw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.3fr
看图王 3FR 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.3fr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.3fr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.3fr
看图王 3FR 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.3fr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.3fr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.arw
看图王 ARW 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.arw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.arw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.arw
看图王 ARW 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.arw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.arw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bay
看图王 BAY 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bay\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bay\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bay
看图王 BAY 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bay\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bay\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bmq
看图王 BMQ 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bmq\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.bmq\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bmq
看图王 BMQ 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bmq\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.bmq\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cap
看图王 CAP 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cap\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cap\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cap
看图王 CAP 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cap\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cap\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cine
看图王 CINE 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cine\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cine\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cine
看图王 CINE 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cine\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cine\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cr2
看图王 CR2 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cr2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cr2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cr2
看图王 CR2 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cr2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cr2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.crw
看图王 CRW 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.crw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.crw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.crw
看图王 CRW 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.crw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.crw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cs1
看图王 CS1 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cs1\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.cs1\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cs1
看图王 CS1 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cs1\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.cs1\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dc2
看图王 DC2 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dc2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dc2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dc2
看图王 DC2 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dc2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dc2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dcr
看图王 DCR 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dcr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dcr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dcr
看图王 DCR 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dcr\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dcr\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dng
看图王 DNG 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dng\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dng\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dng
看图王 DNG 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dng\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dng\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.drf
看图王 DRF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.drf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.drf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.drf
看图王 DRF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.drf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.drf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dsc
看图王 DSC 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dsc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.dsc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dsc
看图王 DSC 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dsc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.dsc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.fff
看图王 FFF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.fff\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.fff\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.fff
看图王 FFF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.fff\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.fff\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ia
看图王 IA 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ia\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ia\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ia
看图王 IA 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ia\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ia\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.iiq
看图王 IIQ 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.iiq\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.iiq\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.iiq
看图王 IIQ 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.iiq\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.iiq\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.k25
看图王 K25 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.k25\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.k25\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.k25
看图王 K25 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.k25\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.k25\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.kc2
看图王 KC2 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.kc2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.kc2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.kc2
看图王 KC2 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.kc2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.kc2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.kdc
看图王 KDC 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.kdc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.kdc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.kdc
看图王 KDC 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.kdc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.kdc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mdc
看图王 MDC 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mdc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mdc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mdc
看图王 MDC 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mdc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mdc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mef
看图王 MEF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mef\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mef\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mef
看图王 MEF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mef\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mef\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mos
看图王 MOS 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mos\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mos\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mos
看图王 MOS 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mos\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mos\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mrw
看图王 MRW 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mrw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.mrw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mrw
看图王 MRW 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mrw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.mrw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.nef
看图王 NEF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.nef\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.nef\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.nef
看图王 NEF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.nef\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.nef\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.nrw
看图王 NRW 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.nrw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.nrw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.nrw
看图王 NRW 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.nrw\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.nrw\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.orf
看图王 ORF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.orf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.orf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.orf
看图王 ORF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.orf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.orf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pef
看图王 PEF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pef\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pef\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pef
看图王 PEF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pef\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pef\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ptx
看图王 PTX 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ptx\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ptx\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ptx
看图王 PTX 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ptx\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ptx\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pxn
看图王 PXN 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pxn\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pxn\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pxn
看图王 PXN 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pxn\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pxn\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.qtk
看图王 QTK 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.qtk\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.qtk\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.qtk
看图王 QTK 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.qtk\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.qtk\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.raf
看图王 RAF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.raf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.raf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.raf
看图王 RAF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.raf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.raf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rdc
看图王 RDC 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rdc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rdc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rdc
看图王 RDC 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rdc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rdc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rw2
看图王 RW2 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rw2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rw2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rw2
看图王 RW2 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rw2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rw2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rwz
看图王 RWZ 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rwz\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.rwz\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rwz
看图王 RWZ 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rwz\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.rwz\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sr2
看图王 SR2 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sr2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sr2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sr2
看图王 SR2 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sr2\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sr2\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.srf
看图王 SRF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.srf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.srf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.srf
看图王 SRF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.srf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.srf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sti
看图王 STI 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sti\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.sti\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sti
看图王 STI 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sti\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.sti\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.x3f
看图王 X3F 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.x3f\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.x3f\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.x3f
看图王 X3F 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.x3f\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.x3f\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wmf
看图王 WMF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wmf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wmf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wmf
看图王 WMF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wmf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wmf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.emf
看图王 EMF 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.emf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.emf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.emf
看图王 EMF 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.emf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.emf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpc
看图王 JPC 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.jpc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpc
看图王 JPC 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpc\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.jpc\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pgx
看图王 PGX 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pgx\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pgx\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pgx
看图王 PGX 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pgx\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pgx\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pnm
看图王 PNM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pnm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pnm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pnm
看图王 PNM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pnm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pnm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pgm
看图王 PGM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pgm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pgm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pgm
看图王 PGM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pgm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pgm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pbm
看图王 PBM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pbm
看图王 PBM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pbm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pbm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ppm
看图王 PPM 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ppm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ppm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ppm
看图王 PPM 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ppm\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ppm\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ska
看图王 SKA 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ska\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.ska\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ska
看图王 SKA 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ska\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.ska\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.webp
看图王 WEBP 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.webp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.webp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.webp
看图王 WEBP 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.webp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.webp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wdp
看图王 WDP 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wdp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.wdp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wdp
看图王 WDP 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wdp\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.wdp\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tbi
看图王 TBI 图片文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tbi\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.tbi\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tbi
看图王 TBI 图片文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tbi\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\common.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.tbi\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PicViewer.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pdf
看图王 PDF 文件
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pdf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\pdf.ico
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\2345Pic.pdf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PdfReader.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pdf
看图王 PDF 文件
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pdf\DefaultIcon
C:\Program Files\2345Soft\2345Pic\icon\pdf.ico
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\2345Pic.pdf\shell\open\command
"C:\Program Files\2345Soft\2345Pic\2345PdfReader.exe" "%1"
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.bmp\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.bmp\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.dib\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.dib\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jpg\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jpg\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jpeg\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jpeg\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jpe\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jpe\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jfif\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.jfif\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.png\Shell\使用看图王美化图片\command
"C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe" "%1" "--rightmenu="
1240
2345PicLoader.exe
write
HKEY_CLASSES_ROOT\SystemFileAssociations\.png\Shell\使用看图王美化图片
Icon
C:\Program Files\2345Soft\2345Pic\2345PicEditor.exe,0
1240
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
GlobalAssocChangedCounter
57
1336
ServiceManager.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
failed_count
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
state
2
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
StatusCodes
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
StatusCodes
01000000
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
state
1
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
dr
1
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome
UsageStatsInSample
0
3360
chrome.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}
usagestats
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
metricsid
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
metricsid_installdate
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
metricsid_enableddate
0
3360
chrome.exe
delete key
HKEY_CURRENT_USER\Software\Google\Chrome\BrowserExitCodes
3360
chrome.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\_NumAccounts
aggregate
sum()
3360
chrome.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\_NumAccounts
S-1-5-21-1302019708-1500728564-335382590-1000
1
3360
chrome.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\_NumSignedIn
aggregate
sum()
3360
chrome.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}\_NumSignedIn
S-1-5-21-1302019708-1500728564-335382590-1000
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Chrome\StabilityMetrics
user_experience_metrics.stability.exited_cleanly
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
lastrun
13199779136806750
3360
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
4600000071000000010000000000000000000000000000000000000000000000C0E333BBEAB1D301000000000000000000000000020000001700000000000000FE800000000000007D6CB050D9C573F70B000000000000006D00330032005C004D00530049004D004700330032002E0064006C000100000004AA400014AA4000040000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000002000000C0A8016400000000000000000000000000000000000000000800000000000000805D3F00983740000008000002000000000000600000002060040000B8A94000020000008802000060040000B8A9400004000000F8010000B284000088B64000B84B400043003A000000000000000000000000000000000000000000
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Discardable\PostSetup\Component Categories\{56FFCC30-D398-11D0-B2AE-00A0C908FA49}\Enum
Implementing
1C00000001000000E307040001000F000500130012009D0100000000
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Common\Rlz\PTimes
C
7B912AEF4AF3D401
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Common\Rlz\RLZs
C1
1C1GCEA_enUA812UA812
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Common\Rlz\RLZs
C2
1C2GCEA_enUA812
3360
chrome.exe
write
HKEY_CURRENT_USER\Software\Google\Common\Rlz\RLZs
C7
1C7GCEA_enUA812
1500
2345PicUpdate.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
1500
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\2345.com
UUID
844FBA9552F9B03632826CA060B9FAC1 2409
1500
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
1500
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASAPI32
EnableFileTracing
0
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASAPI32
EnableConsoleTracing
0
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASAPI32
FileTracingMask
4294901760
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASAPI32
ConsoleTracingMask
4294901760
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASAPI32
MaxFileSize
1048576
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASAPI32
FileDirectory
%windir%\tracing
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASMANCS
EnableFileTracing
0
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASMANCS
EnableConsoleTracing
0
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASMANCS
FileTracingMask
4294901760
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASMANCS
ConsoleTracingMask
4294901760
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASMANCS
MaxFileSize
1048576
1500
2345PicUpdate.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicUpdate_RASMANCS
FileDirectory
%windir%\tracing
1500
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
1500
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
1500
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\2345.com\2345Pic
InstallBy
2804
Pic_2345Svc.exe
write
HKEY_USERS\.DEFAULT\Software\Classes\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
3596
2345PicUpdate.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
3280
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
3280
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@sendmail.dll,-21
Desktop (create shortcut)
3280
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@zipfldr.dll,-10148
Compressed (zipped) folder
3280
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@sendmail.dll,-4
Mail recipient
3280
chrome.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\FXSRESM.dll,-120
Fax recipient
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\2345.com\2345Pic
ActiveDaysNow
1555305601 1813
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
LanguageList
en-US
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASAPI32
EnableFileTracing
0
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASAPI32
EnableConsoleTracing
0
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASAPI32
FileTracingMask
4294901760
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASAPI32
ConsoleTracingMask
4294901760
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASAPI32
MaxFileSize
1048576
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASAPI32
FileDirectory
%windir%\tracing
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASMANCS
EnableFileTracing
0
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASMANCS
EnableConsoleTracing
0
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASMANCS
FileTracingMask
4294901760
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASMANCS
ConsoleTracingMask
4294901760
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASMANCS
MaxFileSize
1048576
1472
2345PicViewer.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\2345PicViewer_RASMANCS
FileDirectory
%windir%\tracing
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\LastVisitedPidlMRU
MRUListEx
FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
NodeSlots
02020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
MRUListEx
0100000000000000070000000200000006000000030000000500000004000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Mode
6
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
LogicalViewMode
2
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
FFlags
1092616257
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
IconSize
48
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
ColInfo
00000000000000000000000000000000FDDFDFFD100000000000000000000000040000001800000030F125B7EF471A10A5F102608C9EEBAC0A000000A000000030F125B7EF471A10A5F102608C9EEBAC04000000C8000000354B179BFF40D211A27E00C04FC308710300000080000000354B179BFF40D211A27E00C04FC308710200000080000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Sort
000000000000000000000000000000000100000030F125B7EF471A10A5F102608C9EEBAC0A00000001000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupView
4294967295
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupByKey:FMTID
{B725F130-47EF-101A-A5F1-02608C9EEBAC}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupByKey:PID
4
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupByDirection
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\27\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
FFlags
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\Shell
SniffedFolderType
Generic
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CIDOpen\Modules\GlobalSettings\ProperTreeModuleInner
ProperTreeModuleInner
9C000000980000003153505305D5CDD59C2E1B10939708002B2CF9AE3B0000002A000000004E0061007600500061006E0065005F004300460044005F0046006900720073007400520075006E0000000B000000000000004100000030000000004E0061007600500061006E0065005F00530068006F0077004C00690062007200610072007900500061006E00650000000B000000FFFF00000000000000000000
1472
2345PicViewer.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Modules\NavPane
ExpandedState
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
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\MCTRes.dll,-200005
Websites for United States
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\System32\ieframe.dll,-12385
Favorites Bar
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\MCTRes.dll,-200016
USA.gov
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\MCTRes.dll,-200017
GobiernoUSA.gov
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\eHome\ehepgres.dll,-304
Public Recorded TV
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-118
Sleep Away
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-117
Maid with the Flaxen Hair
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-116
Kalimba
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-102
Desert
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-101
Chrysanthemum
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-104
Jellyfish
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-103
Hydrangeas
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-107
Lighthouse
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-105
Koala
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-106
Tulips
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\MuiCache\62\52C64B7E
@C:\Windows\system32\SampleRes.dll,-108
Penguins
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
MRUListEx
0200000001000000000000000700000006000000030000000500000004000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
MRUListEx
0100000002000000000000000700000006000000030000000500000004000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Mode
4
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
LogicalViewMode
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
FFlags
1092616257
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
IconSize
16
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
ColInfo
00000000000000000000000000000000FDDFDFFD100000000000000000000000040000001800000030F125B7EF471A10A5F102608C9EEBAC0A0000001001000030F125B7EF471A10A5F102608C9EEBAC0E0000007800000030F125B7EF471A10A5F102608C9EEBAC040000007800000030F125B7EF471A10A5F102608C9EEBAC0C00000050000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
Sort
000000000000000000000000000000000100000030F125B7EF471A10A5F102608C9EEBAC0A00000001000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupView
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupByKey:FMTID
{00000000-0000-0000-0000-000000000000}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupByKey:PID
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
GroupByDirection
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\34\ComDlg\{5C4F28B5-F869-4E84-8E60-F11DB97C5CC7}
FFlags
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\50\ComDlg
TV_FolderType
{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\50\ComDlg
TV_TopViewID
{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\50\ComDlg
TV_TopViewVersion
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
Mode
4
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
LogicalViewMode
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
FFlags
1092616257
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
IconSize
16
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
ColInfo
00000000000000000000000000000000FDDFDFFD100000000000000000000000040000001800000030F125B7EF471A10A5F102608C9EEBAC0A0000001001000030F125B7EF471A10A5F102608C9EEBAC0E0000007800000030F125B7EF471A10A5F102608C9EEBAC040000007800000030F125B7EF471A10A5F102608C9EEBAC0C00000050000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
Sort
000000000000000000000000000000000200000030F125B7EF471A10A5F102608C9EEBAC0A0000000100000030F125B7EF471A10A5F102608C9EEBAC0E000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\AllFolders\ComDlg\{FBB3477E-C9E4-4B3B-A2BA-D3F5D3CD46F9}\{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
FFlags
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2
1
740000001A00EEBBFE23000010007DB10D7BD29C934A973346CC89022E7C00002A0000000000EFBE000000200000000000000000000000000000000000000000000000000100000020002A0000001900EFBE7E47B3FBE4C93B4BA2BAD3F5D3CD46F98207BA827A5B6945B5D7EC83085F08CC20000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2
MRUListEx
0100000000000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
0
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
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
MRUListEx
00000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
NodeSlots
0202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\0
NodeSlot
95
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\0
MRUListEx
FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\95\ComDlg
TV_FolderType
{3F98A740-839C-4AF7-8C36-5BADFB33D5FD}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\95\ComDlg
TV_TopViewID
{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\95\ComDlg
TV_TopViewVersion
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
1
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
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
MRUListEx
0100000000000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\1
0
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
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\1
MRUListEx
00000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
NodeSlots
020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\1\0
NodeSlot
96
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\1\0
MRUListEx
FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlg
TV_FolderType
{3F98A740-839C-4AF7-8C36-5BADFB33D5FD}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlg
TV_TopViewID
{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\96\ComDlg
TV_TopViewVersion
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
2
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
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
MRUListEx
020000000100000000000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU
NodeSlots
02020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202020202
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\2
NodeSlot
97
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1\2
MRUListEx
FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\97\ComDlg
TV_FolderType
{3F98A740-839C-4AF7-8C36-5BADFB33D5FD}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\97\ComDlg
TV_TopViewID
{82BA0782-5B7A-4569-B5D7-EC83085F08CC}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\97\ComDlg
TV_TopViewVersion
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
Mode
6
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
LogicalViewMode
2
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
FFlags
1092616257
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
IconSize
48
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
ColInfo
00000000000000000000000000000000FDDFDFFD100000000000000000000000040000001800000030F125B7EF471A10A5F102608C9EEBAC0A000000A000000030F125B7EF471A10A5F102608C9EEBAC0E0000007800000030F125B7EF471A10A5F102608C9EEBAC040000007800000030F125B7EF471A10A5F102608C9EEBAC0C00000050000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
Sort
000000000000000000000000000000000100000030F125B7EF471A10A5F102608C9EEBAC0A00000001000000
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
GroupView
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
GroupByKey:FMTID
{00000000-0000-0000-0000-000000000000}
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
GroupByKey:PID
0
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
GroupByDirection
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\Bags\12\ComDlg\{C4D98F09-6124-4FE0-9942-826416082DA9}
FFlags
1
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
MRUListEx
000000000200000001000000FFFFFFFF
1472
2345PicViewer.exe
write
HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\BagMRU\2\1
MRUListEx
010000000000000002000000FFFFFFFF
1308
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
1308
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
1308
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\2345.com
2345Pic
844FBA9552F9B03632826CA060B9FAC1 2409
1308
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
1308
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
2444
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2444
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
2444
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
2444
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
1248
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
UNCAsIntranet
0
1248
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
AutoDetect
1
1248
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
1248
2345PicUpdate.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
2764
2345PicLoader.exe
write
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
GlobalAssocChangedCounter
58