Home Malware Programs Backdoors BKDR_POISON.DMI

BKDR_POISON.DMI

Posted: June 26, 2013

Threat Metric

Threat Level: 2/10
Infected PCs: 2,052
First Seen: June 26, 2013
Last Seen: May 20, 2023
OS(es) Affected: Windows

BKDR_POISON.DMI is a backdoor Trojan, which is dropped on a compromised PC by other malware threats or downloaded from the Internet. BKDR_POISON.DMI spreads as a file dropped by other malware threats or as a file downloaded unknowingly by PC users when visiting malicious websites. BKDR_POISON.DMI opens a hidden Internet Explorer window. BKDR_POISON.DMI executes commands from a remote attacker, effectively taking over the infected computer system. BKDR_POISON.DMI does not have any downloading capability. BKDR_POISON.DMI deletes itself after execution. When installed, BKDR_POISON.DMI drops the potentially malicious component files. BKDR_POISON.DMI adds the registry entries to allow its automatic execution at every system startup. BKDR_POISON.DMI executes the commands from a remote attacker. BKDR_POISON.DMI connects to the certain domains to send and receive commands from a remote attacker. BKDR_POISON.DMI logs keystrokes, lists active ports, captures screen, audio, and webcam, executes binary instructions, manages passwords, manages open windows, manages registry, processes, services, devices, and installed applications.

Technical Details

Additional Information

The following URL's were detected:
formationdenehurt.com
Loading...