Malware Signatures

  1. Home
  2. Signatures
  3. Malware Signatures
  4. php.backdoor.eval_POST.008.002

php.backdoor.eval_POST.008.002

Backdoor that uses the PHP eval() function to execute system commands passed through a POST request to the infected website.
This malware allows attackers to execute any php command or even system commands if available.
POST requests are not usually logged thus making it harder to identify the behavior on server access log files.

Severity

HIGH