Technical Information
- %TEMP%\nsjcad0.tmp\userinfo.dll
- %TEMP%\nsjcad0.tmp\app\js\utils\cookies.js
- %TEMP%\nsjcad0.tmp\app\js\utils\commands.js
- %TEMP%\nsjcad0.tmp\app\js\utils\analytics.js
- %TEMP%\nsjcad0.tmp\app\js\models\notifications.js
- %TEMP%\nsjcad0.tmp\app\js\libs\jquery-1.10.2.min.js
- %TEMP%\nsjcad0.tmp\app\js\libs\cmp.bundle.js
- %TEMP%\nsjcad0.tmp\app\js\block_inputs.js
- %TEMP%\nsjcad0.tmp\app\js\app.js
- %TEMP%\nsjcad0.tmp\app\images\welcome-logo.png
- %TEMP%\nsjcad0.tmp\app\images\v-check.png
- %TEMP%\nsjcad0.tmp\app\images\tile-fallback.png
- %TEMP%\nsjcad0.tmp\app\images\progress-app-image-03.png
- %TEMP%\nsjcad0.tmp\app\js\utils\strings-loader.js
- %TEMP%\nsjcad0.tmp\app\images\progress-app-image-02.png
- %TEMP%\nsjcad0.tmp\app\images\progress-app-image-01.png
- %TEMP%\nsjcad0.tmp\app\images\progress-02.png
- %TEMP%\nsjcad0.tmp\app\images\progress-01-overwolf.png
- %TEMP%\nsjcad0.tmp\app\images\plus.png
- %TEMP%\nsjcad0.tmp\app\images\more-info.png
- %TEMP%\nsjcad0.tmp\app\images\minimize-normal.png
- %TEMP%\nsjcad0.tmp\app\images\minimize-hover.png
- %TEMP%\nsjcad0.tmp\app\images\large-logo.png
- %TEMP%\nsjcad0.tmp\app\images\icon.ico
- %TEMP%\nsjcad0.tmp\app\images\small-logo.png
- %TEMP%\nsjcad0.tmp\app\css\reset.css
- %TEMP%\nsjcad0.tmp\app\js\utils\utils.js
- %LOCALAPPDATA%\overwolf\installercache\welcometextheader_0_en.png
- %LOCALAPPDATA%\overwolf\installercache\welcomebackground_0.jpg
- %LOCALAPPDATA%\overwolf\settings\bak\settingspagebasic.xml.bak
- %LOCALAPPDATA%\overwolf\settings\settingspagebasic.xml
- %LOCALAPPDATA%\overwolf\installercache\owresources.dll
- %LOCALAPPDATA%\overwolf\log\installertrace_3036_2020-06-17_20-46.log
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\content\f0accf77cdcbff39f6191887f6d2d357
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\metadata\f0accf77cdcbff39f6191887f6d2d357
- %TEMP%\nsjcad0.tmp\app\js\windows\welcome\welcome-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\welcome\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\settings\template.js
- %TEMP%\nsjcad0.tmp\app\images\icon-fallback.png
- %TEMP%\nsjcad0.tmp\app\js\utils\modal-events-delegate.js
- %TEMP%\nsjcad0.tmp\app\js\windows\progress\progress-1-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\privacy\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\privacy\privacy-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\modal\modal-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\main\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\main\main-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\finish-with-recommended-app\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\finish-with-recommended-app\finish-with-recommended-app-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\finish\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\finish\finish-controller.js
- %TEMP%\nsjcad0.tmp\app\js\windows\cri\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\progress\template.js
- %TEMP%\nsjcad0.tmp\app\js\windows\cri\cri-controller.js
- %TEMP%\nsjcad0.tmp\app\images\header-logo.png
- %TEMP%\nsjcad0.tmp\app\images\gs-placeholder.png
- %TEMP%\nsjcad0.tmp\app\images\game-summary-logo-55px.png
- %TEMP%\nsjcad0.tmp\app\_locales\de\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\vi\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\tr\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\ru\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\pt\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\pl\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\ko\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\ja\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\it\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\fr\messages.json
- %TEMP%\nsjcad0.tmp\app\_locales\es\messages.json
- %LOCALAPPDATA%\overwolf\installercache\welcometextheader_0_de.png
- %TEMP%\nsjcad0.tmp\app\assets\fonts\klavika\klavikawebbasicmedium.eot
- %TEMP%\nsjcad0.tmp\app\progress.html
- %TEMP%\nsjcad0.tmp\app\manifest.json
- %TEMP%\nsjcad0.tmp\app\index.html
- %TEMP%\nsjcad0.tmp\app\cmp.html
- %TEMP%\nsjcad0.tmp\nsis7z.dll
- %TEMP%\nsjcad0.tmp\utils.dll
- %TEMP%\nsjcad0.tmp\owinstaller.exe.config
- %TEMP%\nsjcad0.tmp\owinstaller.exe
- %TEMP%\nsjcad0.tmp\inetc.dll
- %TEMP%\nsjcad0.tmp\uac.dll
- %TEMP%\nsjcad0.tmp\system.dll
- %TEMP%\nsjcad0.tmp\app\_locales\en\messages.json
- %TEMP%\nsjcad0.tmp\app\js\windows\settings\settings-controller.js
- %TEMP%\nsjcad0.tmp\app\assets\fonts\klavika\klavikawebbasicregular.eot
- %TEMP%\nsjcad0.tmp\app\css\finish-with-gs.css
- %TEMP%\nsjcad0.tmp\app\assets\fonts\lato\latolatin-regular.eot
- %TEMP%\nsjcad0.tmp\app\images\game-summary-logo-48px.png
- %TEMP%\nsjcad0.tmp\app\images\game-summary-logo-40px.png
- %TEMP%\nsjcad0.tmp\app\images\close-normal.png
- %TEMP%\nsjcad0.tmp\app\images\close-hover.png
- %TEMP%\nsjcad0.tmp\app\images\checkbox-checked.png
- %TEMP%\nsjcad0.tmp\app\images\bottom-arrow.png
- %TEMP%\nsjcad0.tmp\app\images\bottom-arrow-hover.png
- %TEMP%\nsjcad0.tmp\app\images\big-icon-fallback.png
- %TEMP%\nsjcad0.tmp\app\css\welcome.css
- %TEMP%\nsjcad0.tmp\app\css\welcome-general.css
- %TEMP%\nsjcad0.tmp\app\css\cri.css
- %TEMP%\nsjcad0.tmp\app\css\style.css
- %TEMP%\nsjcad0.tmp\app\_locales\zh\messages.json
- %TEMP%\nsjcad0.tmp\app\css\progress.css
- %TEMP%\nsjcad0.tmp\app\css\privacy.css
- %TEMP%\nsjcad0.tmp\app\css\notification.css
- %TEMP%\nsjcad0.tmp\app\css\header.css
- %TEMP%\nsjcad0.tmp\app\css\gs-b.css
- %TEMP%\nsjcad0.tmp\app\css\gs-a.css
- %TEMP%\nsjcad0.tmp\app\css\footer.css
- %TEMP%\nsjcad0.tmp\app\css\fonts.css
- %TEMP%\nsjcad0.tmp\app\css\finish.css
- %TEMP%\nsjcad0.tmp\app\css\finish-with-recommended-app.css
- %TEMP%\nsjcad0.tmp\app\css\settings.css
- %LOCALAPPDATA%\overwolf\installercache\welcometextheader_0_pt.png
- %LOCALAPPDATA%\overwolf\settings\bak\settingspagebasic.xml.bak
- %LOCALAPPDATA%\overwolf\settings\bak\settingspagebasic.xml.bak
- http://an######snew.overwolf.com/analytics/Counter?Na######################################################################################################################
- http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
- DNS ASK an######snew.overwolf.com
- DNS ASK fo###.#oogleapis.com
- ClassName: 'MPWClass' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%TEMP%\nsjcad0.tmp\owinstaller.exe' Partner=3796&Extension=ekhcackbfanheaceicpfmhmmeojplojfgkmfnpjo&Name=Rainbow%206%20Siege%20Tracker&Thanks=https%3A%2F%2Fgo.overwolf.com%2Finstall-successful%2F&Sel=1 -partnerCustomizationLevel...
- '%WINDIR%\syswow64\dxdiag.exe' /t%LOCALAPPDATA%\Overwolf\Temp\DxDiagOutput.txt