Home / malwarePDF  

Backdoor.Elmost


First posted on 23 December 2015.
Source: Symantec

Aliases :

There are no other names known for Backdoor.Elmost.

Explanation :

The Trojan may arrive on the compromised computer by way of malicious documents.

Once exectued, the Trojan creates the following file:
[PATH TO THREAT]\icmctr.dll
The Trojan then opens a back door on the compromised computer, and connects to the following remote location:
news.rinpocheinfo.com
The Trojan may then perform malicious activities on the compromised computer.

Last update 23 December 2015

 

TOP