Home Malware Programs Backdoors Samkams

Samkams

Posted: March 28, 2006

Samkams is a dangerous backdoor that gives the remote attacker unauthorized access to a compromised PC. It also collects computer information and sends it to a predefined web server.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 dllcnfg.exe
    2 dmgrd.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}%System%dllcnfg.exeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsNTCurrentVersionWinlogonUserinit=C:WINDOWSsystem32userinit.exe

Related Posts

Loading...