Author: Anthony Joe Melgarejo   

 

Backdoor:PHP/Shell.C (Microsoft), W32.IRCBot (Symantec), Backdoor.PHP.AMJ (FSecure), PHP/IRCBOT.EZ.1 (Antivir), PHP/Pbot.D (F-Prot), PHP.ShellExec (ClamAV), PHP/IRCBot.KJ!tr.bdr (Fortinet), Backdoor.PHP.Pbot (Ikarus), NetTool.PHP.Pbot.a (VBA32)

 PLATFORM:

Windows 2000, Windows Server 2003, Windows XP (32-bit, 64-bit), Windows Vista (32-bit, 64-bit), Windows 7 (32-bit, 64-bit)

 OVER ALL RISK RATING:
 DAMAGE POTENTIAL::
 DISTRIBUTION POTENTIAL::
 REPORTED INFECTION:
 INFORMATION EXPOSURE:
Low
Medium
High
Critical

  • Threat Type:
    Backdoor

  • Destructiveness:
    No

  • Encrypted:
     

  • In the wild::
    Yes


  TECHNICAL DETAILS

File size: różni się
File type: Script
Memory resident: No
INITIAL SAMPLES RECEIVED DATE: 01 września 2011