OSX/Musminim [Threat Name] go to Threat

OSX/Musminim.A [Threat Variant Name]

Category trojan
Size 2153704 B
Detection created Mar 01, 2011
Signature database version 5916
Aliases Backdoor.OSX.BlackHol.a (Kaspersky)
  OSX.Musminim (Symantec)
  Backdoor:MacOS_X/Musminim.A (Microsoft)
Short description

The trojan serves as a backdoor. It can be controlled remotely.

Installation

The trojan must be manually installed.

Other information

The trojan acquires data and commands from a remote computer or the Internet.


It may perform the following actions:

  • run executable files
  • send result of executed program
  • open a specific URL address
  • show fake alerts
  • shut down/restart the computer

The trojan opens some TCP ports:

  • 7777-778%number%
  • 9999-1000%number%

The variable %number% represents a number in the range 1-9 .


The OSX/Musminim.A can block access to operating system.


The trojan displays the following dialog boxes:

Please enable Javascript to ensure correct displaying of this content and refresh this page.