Win32/PSW.Agent.NNI [Threat Name] go to Threat

Win32/PSW.Agent.NNI [Threat Variant Name]

Category trojan
Size 56320 B
Aliases VirTool:Win32/Injector.gen!AD (Microsoft)
  Trojan.Siggen.2245 (Dr.Web)
Short description

Win32/PSW.Agent.NNI is a trojan that steals passwords and other sensitive information. The trojan attempts to send gathered information to a remote machine.

Installation

The trojan does not create any copies of itself.

Information stealing

The trojan collects information related to the following applications:

  • Windows Live
  • Google Talk
  • Pidgin
  • Paltalk
  • Valve Steam
  • No-Ip
  • DynDNS
  • Firefox
  • Internet Explorer
  • FileZilla
  • FlashFXP

The trojan collects the following information:

  • login user names for certain applications/services
  • login passwords for certain applications/services

The trojan attempts to send gathered information to a remote machine.


The trojan contains an URL address. The HTTP protocol is used.

Other information

The trojan quits immediately if any of the following applications is detected:

  • Wireshark
  • Sysinternals Process Monitor

Please enable Javascript to ensure correct displaying of this content and refresh this page.