Threat Database Backdoors Backdoor.Wisti

Backdoor.Wisti

By LoneStar in Backdoors

Threat Scorecard

Threat Level: 20 % (Normal)
Infected Computers: 3
First Seen: September 19, 2012
Last Seen: October 8, 2022
OS(es) Affected: Windows

Backdoor.Wisti is a Trojan that opens a back door on the compromised PC. Backdoor.Wisti usually propagates via infected PDF files. While being executed, Backdoor.Wisti can create malevolent files and modify the Windows Registry. Backdoor.Wisti may connect to a number of domains. Backdoor.Wisti contacts a command-and-control (C&C) server in order to get commands from cybercriminals. Backdoor.Wisti enables cybercriminals to gather computer system and victim's information and retrieve Internet Explorer and Firefox configuration data.

File System Details

Backdoor.Wisti may create the following file(s):
# File Name Detections
1. %Temp%\svchost.exe
2. %Temp%\csrss.exe
3. %Temp%\lass.exe
4. %UserProfile%\Application Data\Microsoft\Network\msscrt726.dll
5. %Windir%\~00ELISE1D797.TMP

Registry Details

Backdoor.Wisti may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\stisvc

URLs

Backdoor.Wisti may call the following URLs:

nicyaboyenan.com

Trending

Most Viewed

Loading...