Bebshell details

  • Description

    Bebshell is a backdoor that provides the attacker with unauthorized remote access to the compromised computer. The intruder can manipulate files, start and end processes, log keystrokes and send e-mail messages. The backdoor also allows to steal e-mail account details, retrieve network and drive information and modify system configuration by altering the Windows registry.

  • Dll

    webshell.dll

  • Registry

    HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoadwebshell HKEY_CLASSES_ROOTCLSID[random string]InProcServer32(Default)=percentSystempercentwebshell.dll