Threat Database Backdoors Backdoor.Win32.DarkKomet.eku

Backdoor.Win32.DarkKomet.eku

By JubileeX in Backdoors

Threat Scorecard

Popularity Rank: 19,865
Threat Level: 60 % (Medium)
Infected Computers: 2,665
First Seen: May 1, 2013
Last Seen: January 6, 2026
OS(es) Affected: Windows

Backdoor.Win32.DarkKomet.eku is a dangerous and deceptive backdoor Trojan that may display repeated error messages while it conducts malicious actions without any indication to the computer user. Backdoor.Win32.DarkKomet.eku may produce outbound internet traffic and allow a remote attacker to connect to the infected computer. Through the connection, a remote hacker may be able to steal data from the system. It is essential that Backdoor.Win32.DarkKomet.eku be removed to reduce the risk of having data and the infected system compromised.

File System Details

Backdoor.Win32.DarkKomet.eku may create the following file(s):
# File Name Detections
1. %System%\Minecraft\mc.exe

Analysis Report

General information

Family Name: Backdoor.DarkKomet.D
Signature status: No Signature

Known Samples

MD5: 9e09d99b7c232cb5a975423cd6ebcf2e
SHA1: a6daabe8d28f79c92e34c06772ca6a88f44fcc52
SHA256: D7F5445EC2A66126BEE1FBAA348880C2B95B761E8671A34EA5E4C2FAC3B98349
File Size: 1.30 MB, 1295202 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Version 1.00
Internal Name TJprojMain
Original Filename TJprojMain.exe
Product Name Project1
Product Version 1.00

File Traits

  • dll
  • x86

Windows API Usage

Category API
Other Suspicious
  • SetWindowsHookEx

1 Comment

Joshua Frasley Reply

Just got infected with it;/ Blocked task manager and regedit;(

Trending

Most Viewed

Loading...