WEBC2-CSON

WEBC2-CSONWEBC2-CSON

Description

A WEBC2 backdoor is designed to retrieve a Web page from a pre-determined C2 server. It expects the Web page to contain special HTML tags; the backdoor will attempt to interpret the data between the tags as commands. Members of this family of malware act only as downloaders and droppers for other malware. They communicate with a hard-coded C2 server, reading commands embedded in HTML comment fields. Some variants are executables which act upon execution, others are DLLs which can be attached to services or loaded through search order hijacking.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
WEBC2-UGX
Software
WEBC2-AUSOV
Software
WEBC2-Y21K
Software
WEBC2-CLOVER
Software
WEBC2-TOCK
Software
WEBC2-GREENCAT
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.