Technical Information
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://se####.searchglnn.com/?so###########################################################################################
- %APPDATA%\{28e56cfb-e30e-4f66-85d8-339885b726b8}\uninstall.exe
- DNS ASK se####.searchglnn.com
- DNS ASK im#.##archglnn.com
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%WINDIR%\syswow64\cmd.exe' /c FOR /L %V IN (1,1,10) DO del /F "<Full path to file>" >> NUL & PING 1.1.1.1 -n 1 -w 1000 > NUL & IF NOT EXIST "<Full path to file>" EXIT' (with hidden window)
- '%WINDIR%\syswow64\cmd.exe' /c FOR /L %V IN (1,1,10) DO del /F "<Full path to file>" >> NUL & PING 1.1.1.1 -n 1 -w 1000 > NUL & IF NOT EXIST "<Full path to file>" EXIT
- '%WINDIR%\syswow64\ping.exe' 1.1.1.1 -n 1 -w 1000