Home Malware Programs Trojans Trojan.holisnif

Trojan.holisnif

Posted: May 21, 2010

Trojan.holisnif is a malicious Trojan that can access a users system without any warning. Computer users need to be aware that Trojan.holisnif will not only lead them to several annoyances, but they will also go through a lot of undesired computer issues. Trojan.Holisnif may collect sensitive information from a corrupted PC with the help of other malware. Trojan.Holisnif is also known to transfer the collected data to a remote hacker through the remote server. Trojan.Holisnif could potentially lead to data loss or even worse, identity theft.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\drivers\npf.sys
    2 %System%\Packet.dll
    3 %System%\wpcap.dll

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\"sniffer" = "%CurrentFolder%\[RANDOM FILE NAME].exe"
Loading...