Analysis by: Sabrina Lei Sioting

 PLATFORM:

Windows 2000, Windows XP, Windows Server 2003

 OVERALL RISK RATING:
 DAMAGE POTENTIAL:
 DISTRIBUTION POTENTIAL:
 REPORTED INFECTION:

  • Threat Type: Backdoor

  • Destructiveness: No

  • Encrypted: No

  • In the wild: Yes

  OVERVIEW

This backdoor may be hosted on a website and run when a user accesses the said website.

  TECHNICAL DETAILS

Tamaño del archivo 29,072 bytes
Tipo de archivo ASP
Residente en memoria No
Fecha de recepción de las muestras iniciales 19 Jan 2011

Arrival Details

This backdoor may be hosted on a website and run when a user accesses the said website.

NOTES:
This backdoor is a tool that can be used to create a TCP circuit through genuinely formed HTTP requests.

This indicates that if a JSP/PHP/ASP page can be uploaded on a server, the remote user can connect to hosts behind that server insignificantly.