Техническая информация
- %PROGRAM_FILES%\dailydeals\uninstall.exe -i
- <SYSTEM32>\regsvr32.exe /s /i "%PROGRAM_FILES%\dailydeals\dailydeals.dll"
- <SYSTEM32>\regsvr32.exe /s /u "%PROGRAM_FILES%\dailydeals\dailydeals.dll"
- <SYSTEM32>\taskkill.exe /im iexplore.exe /f
- iexplore.exe
- %TEMP%\nsj2.tmp\nsisos.dll
- %PROGRAM_FILES%\dailydeals\uninstall.exe
- <SYSTEM32>\debug.log
- %TEMP%\nsj2.tmp\System.dll
- %PROGRAM_FILES%\dailydeals\dailydeals.js
- %TEMP%\nsj2.tmp\registry.dll
- %PROGRAM_FILES%\dailydeals\DailyDeals.dll
- %PROGRAM_FILES%\dailydeals\dailydealsIE9.js
- %TEMP%\nsj2.tmp\System.dll
- %TEMP%\nsj2.tmp\registry.dll
- %TEMP%\nsj2.tmp\nsisos.dll
- 'my##buy.com':80
- 'p.#####tingsweep.com':80
- my##buy.com/trackingservice/tracking.asmx/TrackInstall?ti######################################################################################################
- p.#####tingsweep.com/?r=###########
- DNS ASK my##buy.com
- DNS ASK p.#####tingsweep.com
- ClassName: '' WindowName: ''