I followed your link on a virtual machine. Didn't do much analysis, just a quick peek. It relies on a patched exploit in IE to download and execute some malware from a temp folder. My VM was patched, but I may grab a sample later. As a bonus, it does send you to some amateur webcam site, where they want your billing and credit card info: By the way, the username is irrelevant. These are a dime a dozen.