Trojan.Mebromi

Trojan.Mebromi is BIOS-level malware that takes control of the victim before MBR. [1]

ID: S0001
Type: MALWARE
Platforms: Windows
Version: 1.1
Created: 31 May 2017
Last Modified: 30 March 2020

Techniques Used

Domain ID Name Use
Enterprise T1542 .001 Pre-OS Boot: System Firmware

Trojan.Mebromi performs BIOS modification and can download and execute a file as well as protect itself from removal.[1]

References