Technical Information
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- %TEMP%\nse3.tmp\System.dll
- %TEMP%\nse3.tmp\inst_start
- %TEMP%\nse3.tmp\getCountry
- %TEMP%\nse3.tmp\UserInfo.dll
- %TEMP%\nse3.tmp\NSISdl.dll
- %TEMP%\5XnmXRnynilhPWms
- %TEMP%\4vGf42iqgwkAWDzo.exe
- %TEMP%\nse3.tmp\NSISHelper.dll
- %TEMP%\nsz2.tmp
- 'yo######ownloadersite.com':80
- http://www.yo######ownloadersite.com/getcountry.html via yo######ownloadersite.com
- http://www.yo######ownloadersite.com/images/pixel.gif?ac########################################### via yo######ownloadersite.com
- DNS ASK www.yo######ownloadersite.com
- '%TEMP%\4vGf42iqgwkAWDzo.exe'
- '%WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe'