DomainIQ pay-per install

Category: Adware and PUAs Protection available since:23 Oct 2012 02:00:30 (GMT)
Type: Unspecified PUA Last Updated:02 Apr 2014 21:56:16 (GMT)

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of DomainIQ pay-per install include:

Example 1

File Information

Size
313K
SHA-1
0000402797801ae8f3b79ca636038dd5521a41b4
MD5
15bc69d461474e5a0b11bc603ca3f4dd
CRC-32
f8a7c37b
File type
Windows executable
First seen
2014-03-11

Runtime Analysis

Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-vafmusic.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\show.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\android.exe
    Size
    503K
    SHA-1
    7d3c13aca4d8f0f26ad9a458cf86da235a58cdce
    MD5
    427739ef23cd55fd0bff302e47fff230
    CRC-32
    964ef53a
    File type
    Windows executable
    First seen
    2014-02-04
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\percentage-bg.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\check.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-vafplayer.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\butpause.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\less.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\more.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\cross.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-miul.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\check-close.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\jquery.min.js
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position3A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\logo-win.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position1A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position2C.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\bullet-short.gif
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\style.css
    Size
    25K
    SHA-1
    a6839e7b122968461e8387bf4dec3efbb099ff8c
    MD5
    aa7d6befd89a1128620c4434c408f30d
    CRC-32
    3e6c1816
    File type
    Cascading Style Sheet
    First seen
    2014-03-07
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position3B.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-gevideoconverter.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\butplay.png
  • c:\Documents and Settings\test user\Local Settings\Temp\android\Newtonsoft.Json.dll
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position2A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-printpdf.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-ifish.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position3D.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-zipper.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\progress_small.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\progress.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\progress_small_bg.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin.dmc
    Size
    4.0K
    SHA-1
    c3f802e5cca6aaad331f1d334325263cdc7d3b0c
    MD5
    eb2c82683ab3a91666f48e64083e2ef8
    CRC-32
    8fe0e29d
    File type
    Base64 encoded
    First seen
    2014-03-04
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\options.html
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\finish.html
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position4A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\android\SQLite.Interop.dll
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position3C.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\instalando.html
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\temp\templateDisplays.dfe
    Size
    7.9K
    SHA-1
    3a7c8d0e2fb238825965c5cbfb1b26790b490334
    MD5
    2f41492b2b3345dac6b073fb339bcd04
    CRC-32
    2f97a115
    File type
    PK ZIP archive
    First seen
    2014-03-03
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\temp\Dockings.dfe
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\config.dmc
    Size
    1.1K
    SHA-1
    2a1939bbe9e3ffe05cb4875766e66fe124028fc9
    MD5
    2c196227a79c1d08fe6ad2e80047a25b
    CRC-32
    96d9b3b0
    File type
    Base64 encoded
    First seen
    2014-03-11
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\group.html
    Size
    11K
    SHA-1
    ac70dac9d6eebce21fcc19f8cd1a6d0d0aec2e1a
    MD5
    ba1b60a9ed7b029e327344da60a56057
    CRC-32
    71861f2a
    File type
    Unspecified Markup Language
    First seen
    2014-02-26
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\box.html
    Size
    4.0K
    SHA-1
    fef39816eb30d45813a19e83b57026b6968480cd
    MD5
    e9c3291f8d41dbf50305802f09d4cbdd
    CRC-32
    b0fe839d
    File type
    Hypertext Markup Language
    First seen
    2014-03-03
  • c:\Documents and Settings\test user\Local Settings\Temp\bhs2.tmp
    Size
    243K
    SHA-1
    2a97153c16443db59bb9887ac982293250ebdb1b
    MD5
    87eab94f6e6627bd2fd3170f95a2eed9
    CRC-32
    0d48aa59
    File type
    Windows executable
    First seen
    2014-02-06
  • c:\Documents and Settings\test user\Local Settings\Temp\android\System.Data.SQLite.dll
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\close.html
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\exe\welcome.html
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\temp\templateStyle.dfe
    Size
    337K
    SHA-1
    31c97666ff2433a35e6ef35df58c5321b4461591
    MD5
    f278a8d85bcd32f199b7c8ccf301f068
    CRC-32
    7467492a
    File type
    PK ZIP archive
    First seen
    2014-03-07
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\bg_app.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\boton_xl.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\boton.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-geaudioconverter.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\bullet.gif
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\base.css
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\screen-olivebrowser.png
  • c:\Documents and Settings\test user\Local Settings\Temp\android\android.exe.config
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\check.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\android\android.exe
    Size
    25K
    SHA-1
    dcb97cc5b1977bb49df05c165c63bf54550916e9
    MD5
    f19b37bddd81b527667742e73257ac05
    CRC-32
    43d8cf00
    File type
    Windows executable
    First seen
    2014-02-04
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\images\hide.png
  • c:\Documents and Settings\test user\Local Settings\Temp\462ec890-c074-4100-ad15-2a7eb7a0b975\bin\css\position2B.css
Registry Keys Created
  • HKLM\SOFTWARE\anset\com.mobilesoftdroid.videoplayer
    can
    0x00000000
Registry Keys Modified
  • HKLM\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication
    Name
    test_item.exe
HTTP Requests
  • http://api.v2.secdls.com/index.php/api/314/New_Player/578/811/English/WW.xml
  • http://api.v2.secdls.com/index.php/apiLoading/811.html
  • http://dtrack.secdls.com/debug/Version/1_0_0_0/trace/Start
  • http://dtrack.secdls.com/debug/android/9/can/0
  • http://images.imagesdownloader.com/screenshot/380x220/%mapp%
  • http://images.imagesdownloader.com/screenshot/380x220/New_Player
  • http://images.imagesdownloader.com/screenshot/icon/%mapp%
  • http://images.imagesdownloader.com/screenshot/icon/New_Player
  • http://images.imagesdownloader.com/screenshot/installer/%mapp%
  • http://images.imagesdownloader.com/screenshot/installer/New_Player
  • http://staticrr.newdownloadls.com/Loading/ab3232d7_loading_green/box.html
  • http://staticrr.newdownloadls.com/Loading/ab3232d7_loading_green/images/loading.gif
  • http://staticrr.newdownloadls.com/Loading/ab3232d7_loading_green/loading.css
  • http://staticrr.paleokits.net//Displays/Templates/a7302bd4_Win_A_Banner_DeclineLink-Green.zip
  • http://staticrr.paleokits.net//Docking/Docking.zip
  • http://staticrr.paleokits.net//Styles/Templates/e9c1a9ca_Win_A_Banner_DeclineLink.zip
  • http://staticrr.paleokits.net/sdb/doma.js
  • http://tb.myappupdate.com/Apps/toolbars/apkSetup4.exe
DNS Requests
  • api.v2.secdls.com
  • dtrack.secdls.com
  • images.imagesdownloader.com
  • staticrr.newdownloadls.com
  • staticrr.paleokits.net
  • tb.myappupdate.com

Example 2

File Information

Size
796K
SHA-1
00008a1a1b0814deda8562c01bd7779e9269a515
MD5
317d27f661ee0f67eaeb26c0913c8f53
CRC-32
ecaa0fba
File type
Windows executable
First seen
2013-09-01

Runtime Analysis

Copies Itself To
  • c:\Documents and Settings\test user\Local Settings\Temp\DM\test_item.exe\a896107152fe41c096cc6b72a98f0d89\installer.exe
Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\DM\test_item.exe\a896107152fe41c096cc6b72a98f0d89\launch.exe
  • c:\Documents and Settings\test user\Local Settings\Temp\DM\test_item.exe\a896107152fe41c096cc6b72a98f0d89\esample.exe
  • c:\Documents and Settings\test user\Local Settings\Temp\DM\test_item.exe\a896107152fe41c096cc6b72a98f0d89\sample.exe
  • c:\Documents and Settings\test user\Local Settings\Temp\DM\test_item.exe\a896107152fe41c096cc6b72a98f0d89\launch.exe.config
  • c:\Documents and Settings\test user\Local Settings\Temp\DM\test_item.exe\a896107152fe41c096cc6b72a98f0d89\sample.exe.config
DNS Requests
  • dtrack.secdls.com

Example 3

File Information

Size
460K
SHA-1
0000d68205cf5aa681912e59c33cc2d4c1e2bff1
MD5
7fde72a72b00953891a974cb0b4ce0fb
CRC-32
582040c2
File type
Windows executable
First seen
2013-12-30

Runtime Analysis

Copies Itself To
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\parent.txt
Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position2C.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\bullet-short.gif
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-vafmusic.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\boton_xl.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-geaudioconverter.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\hide.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\bullet.gif
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\logo-win.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\check.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\progress_small.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\butplay.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\butpause.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\close.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\cross.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\percentage-bg.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\more.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\check-close.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-gevideoconverter.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\progress_small_bg.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position3D.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\jquery.min.js
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\progress.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\check.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\box.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-ifish.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position2A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bnuwrnmxabcsvoe.exe
    Size
    7.0K
    SHA-1
    8584ee1369e0570a99b67674ca4c206b6985e9e0
    MD5
    5fb416a4390fff7fd79686054466be07
    CRC-32
    a162e7f4
    File type
    Windows executable
    First seen
    2013-12-29
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\options.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\finish.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\config.dmc
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\temp\Dockings.dfe
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\temp\templateStyle.dfe
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position4A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bnuwrnmxabcsvoe.exe.config
    Size
    767
    SHA-1
    1d6a7acaeb2623bbab9b04da4b2e799aa9927a4b
    MD5
    26d995b829f45c1588f33b0e5b465c57
    CRC-32
    c69b733e
    File type
    Extensible Markup Language (XML)
    First seen
    2013-10-11
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\welcome.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-printpdf.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-zipper.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position1A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\style.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\group.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\111.txt
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position3B.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position3A.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\temp\templateDisplays.dfe
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\bg_app.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-olivebrowser.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position2B.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\base.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\less.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\boton.jpg
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\position3C.css
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-miul.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\show.png
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\exe\instalando.html
  • c:\Documents and Settings\test user\Local Settings\Temp\fodikcrsfwdyele\bin\css\images\screen-vafplayer.png
Registry Keys Modified
  • HKLM\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication
    Name
    bnuwrnmxabcsvoe.exe
Processes Created
  • c:\docume~1\support\locals~1\temp\fodikcrsfwdyele\bnuwrnmxabcsvoe.exe
HTTP Requests
  • http://api.v2.secdls.com/index.php/api/259/Java/446/713/English/WW.xml
  • http://api.v2.secdls.com/index.php/apiLoading/713.html
  • http://dtrack.secdls.com/debug/Version/4_0_6_89/trace/Start
  • http://images.gufile.com/screenshot/380x220/%mapp%
  • http://images.gufile.com/screenshot/380x220/Java
  • http://images.gufile.com/screenshot/icon/%mapp%
  • http://images.gufile.com/screenshot/icon/Java
  • http://staticrr.newdownloadls.com/Loading/54ea5f38_loading/box.html
  • http://staticrr.newdownloadls.com/Loading/54ea5f38_loading/images/bg_app.png
  • http://staticrr.newdownloadls.com/Loading/54ea5f38_loading/images/loading.gif
  • http://staticrr.newdownloadls.com/Loading/54ea5f38_loading/loading.css
  • http://staticrr.paleokits.net//Displays/Templates/4934e143_Win_A_Banner-NoLink-DeclineLink.zip
  • http://staticrr.paleokits.net//Docking/Docking.zip
  • http://staticrr.paleokits.net//Styles/Templates/e9c1a9ca_Win_A_Banner_DeclineLink.zip
  • http://staticrr.paleokits.net/sdb/doma.js
DNS Requests
  • api.v2.secdls.com
  • dtrack.secdls.com
  • images.gufile.com
  • staticrr.newdownloadls.com
  • staticrr.paleokits.net

download Try Sophos products for free
Download now