Home Malware Programs Backdoors Mire

Mire

Posted: March 28, 2006

Mire is a dangerous backdoor, which gives the remote attacker full unauthorized access to a compromised PC. It allows the intruder to manage the file computer, execute arbitrary commands, control processes and computer services, alter the Windows registry, access network shares and take screenshots of user activity. Mire can also record sounds from any microphone device and run a network sniffer. The backdoor automatically runs as a service on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 winupd.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServiceswinupd

Related Posts

Loading...