POORAIM

POORAIMPOORAIM

Description

POORAIM malware is designed with basic backdoor functionality and leverages AOL Instant Messenger for command and control communications. POORAIM includes the following capabilities: System information enumeration, File browsing, manipulation and exfiltration, Process enumeration, Screen capture, File execution, Exfiltration of browser favorites, and battery status. Exfiltrated data is sent via files over AIM. POORAIM has been involved in campaigns against South Korean media organizations and sites relating to North Korean refugees and defectors since early 2014. Compromised sites have acted as watering holes to deliver newer variants of POORAIM.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
KARAE
Software
Moudoor
Software
Fauppod
Software
SLOWDRIFT
Software
MyDoom
Software
Backdoor.Tinybaron
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.