| Description:
|
Details
Backdoor.Nethief
The family of classic trojan horse for hidden remote control. This backdoors uses standard client-server technology and includes two parts - client and server, both are Windows executable files (PE EXE). The backdoor server is installed on victim computers, and the client controls them from remote station.
When the server is run it registered itself in system registry. Usually modificated following key:
[HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun] |