Technical Information
- [<HKLM>\SYSTEM\ControlSet001\Services\GoogleChromeServcie] 'ImagePath' = '%ProgramFiles%\iGoogle\GoogleUpdate.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\GoogleChromeServcie] 'Start' = '00000002'
- '<SYSTEM32>\ntvdm.exe' -f -i1
- '%ProgramFiles%\iGoogle\GoogleUpdate.exe'
- '%ProgramFiles%\iGoogle\GoogleUpdate.exe' -new
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %ProgramFiles%\iGoogle\job.xml
- %ProgramFiles%\iGoogle\GoogleUpdate.exe
- <SYSTEM32>\google_guid.dat
- %ProgramFiles%\iGoogle\java.exe
- <SYSTEM32>\google_guid.dat
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- 'ig####e.imblog.in':80
- 'ig####e.imblog.in':10001
- 'iw###.vicp.cc':80
- http://iw###.vicp.cc/job.xml
- http://iw###.vicp.cc/
- DNS ASK ig####e.imblog.in
- DNS ASK iw###.vicp.cc
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-bbc.bc0.390001'