Igloo 1.5

Released 21 years, 9 months ago. February 2003

Copyright © MegaSecurity

By SiCmaggOt


Igloo 1.5
Informations
From Sweden
Author SiCmaggOt
Family Igloo
Category Remote Access
Version Igloo 1.5
Released Date Feb 2003, 21 years, 9 months ago.
Language Delphi
Additional Information
Server:
c:\WINDOWS\SYSTEM\EXPLORER.EXE 

size: 662.528 bytes

port: 31337 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "EXPLORER" 


Added:
c:\WINDOWS\SYSTEM\Explorer.vbs 

folder:
c:\WINDOWS\sys32 
with 226 different named files of 596.992 bytes 

registry:
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "dir0" 
Type: REG_SZ 
Data: 012345:C:\Windows\sys32 
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "dir1" 
Type: REG_SZ 
Data: 012345:C:\Windows\sys32 
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "dir2" 
Type: REG_SZ 
Data: 012345:C:\Windows\sys32 
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "dir3" 
Type: REG_SZ 
Data: 012345:C:\Windows\sys32 
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "dir4" 
Type: REG_SZ 
Data: 012345:C:\Windows\sys32 
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "dir5" 
Type: REG_SZ 
Data: 012345:C:\Windows\sys32 
HKEY_CURRENT_USER\Software\Kazaa\LocalContent "DisableSharing" 
Type: REG_SZ 
Data: 0 
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "RegisteredOrganization" 
Type: REG_SZ 
Data: http://www.crash.com

If you recognize any personal information on this page and wish to have it removed or redacted, please contact us at jplesueur@phrozen.io. We are committed to protecting your privacy in accordance with GDPR regulations.