WEBC2-ADSPACE

WEBC2-ADSPACEWEBC2-ADSPACE

Description

A WEBC2 backdoor is designed to retrieve a Web page from a pre-determined C2 server. It expects the Web page to contain special HTML tags; the backdoor will attempt to interpret the data between the tags as commands. This family of malware is capable of downloading and executing a file. All variants represented here are the same file with different MD5 signatures. This malware attempts to contact its C2 once a week (Thursday at 10:00 AM). It looks for commands inside a set of HTML tags, part of which are in the File Strings indicator term below.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
WEBC2-UGX
Software
WEBC2-YAHOO
Software
WEBC2-CSON
Software
WEBC2-Y21K
Software
WEBC2-TOCK
Software
WEBC2-TABLE
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.