Backdoor.PHP.WEBSHELL.BGHIOL
Backdoor:PHP/Small.M (Microsoft); PHP/Webshell.o (NAI)
Windows
Threat Type: Backdoor
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
This Backdoor arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It may be hosted on a website and run when a user accesses the said website.
It requires being executed with a specific argument/parameter, an additional component, or in a specific environment in order to proceed with its intended routine.
TECHNICAL DETAILS
Arrival Details
This Backdoor arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
It may be hosted on a website and run when a user accesses the said website.
Other Details
This Backdoor requires being hosted on a web server in order to proceed with its intended routine.
It requires being executed with a specific argument/parameter, an additional component, or in a specific environment in order to proceed with its intended routine.