Technical Information
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '2500' = '00000003'
- %TEMP%\nse225f.tmp
- %TEMP%\nsz228f.tmp\system.dll
- %WINDIR%\syswow64\nsj2712.dll
- %TEMP%\nsz228f.tmp\nsbrowseropt.dll
- %WINDIR%\syswow64\cont_globaladsolution-remove.exe
- %TEMP%\nsz228f.tmp\nsisdl.dll
- %TEMP%\gewhk1
- %TEMP%\nsz228f.tmp\nsbrowseropt.dll
- %TEMP%\nsz228f.tmp\nsisdl.dll
- %TEMP%\nsz228f.tmp\system.dll
- 'ad##.###baladsolution.com':80
- http://ad##.###baladsolution.com/smb/nsi_install.php?in###############################################################
- '34.##9.100.209':443
- DNS ASK ad##.###baladsolution.com