Bebshell is a backdoor that provides the attacker with unauthorized remote access to the compromised computer. The intruder can manipulate files, start and end processes, log keystrokes and send e-mail messages. The backdoor also allows to steal e-mail account details, retrieve network and drive information and modify system configuration by altering the Windows registry.
webshell.dll
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionShellServiceObjectDelayLoadwebshell HKEY_CLASSES_ROOTCLSID[random string]InProcServer32(Default)=percentSystempercentwebshell.dll