Technical Information
- %TEMP%\reloga.exe (downloaded from the Internet)
- %TEMP%\reloga.exe
- %TEMP%\nsb2.tmp\ExecPri.dll
- %TEMP%\nsb2.tmp\inetc.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\nssplc[1].exe
- %TEMP%\nsb2.tmp\inetc.dll
- %TEMP%\nsb2.tmp\ExecPri.dll
- 'vi###ick.info':80
- vi###ick.info/cgi/nssplc.exe
- DNS ASK vi###ick.info
- '<Private IP address>':1033
- ClassName: 'Shell_TrayWnd' WindowName: ''