Dimnie
- First seen
- 2014-08-21 00:00:00
- Malware type
- rat, downloader, keylogger
- Family
- Malware family
- Last IoC activity
- 2026-07-18 19:39:25
- Profile updated
- 2026-07-07 14:57:44
Targeted industries: financial-services government-and-public-sector healthcare-and-pharmaceutical
Context
Dimnie is a piece of malware that has been active since 2014, primarily used in targeted attacks. It functions as a remote access trojan (RAT) that can download additional payloads, log keystrokes, and steal sensitive information. It often avoids detection by using techniques like code obfuscation and environmental awareness.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Dimnie_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Dimnie (report)
- researchcenter.paloaltonetworks.com — Unit42 Dimnie Hiding Plain Sight (report)