Home Malware Programs Trojans Satiloler.c

Satiloler.c

Posted: March 28, 2006

Satiloler.c is a trojan designed to steal user sensitive information.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 bkup.reg
    2 divx.ini
    3 init.dll
    4 lsass.exe
    5 sfc.dll
    6 sfc_os.dll
    7 userinit.exe
    8 xvid.dll
    9 xvid.ini

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRunsystem=C:ProgramFilesCommonFilessystemlsass.exeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsNTCurrentVersionWindowsAppInit_DLLs=%System%init.dllHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsNTCurrentVersionWinlogonSFCDisable=FFFFFF9DHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsNTCurrentVersionWinlogonSFCScan=0HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsNTCurrentVersionWinlogonsystem
Loading...