SHA1 hash:
- ec7269f3e208d72085a99109a9d31e06b4a52152 (О ПРЕДОСТАВЛЕНИИ ИНФОРМАЦИИ ДЛЯ ПОДГОТОВКИ СОВЕЩАНИЯ.exe)
Description
A backdoor for Microsoft Windows operating systems that is written in the C# programming language and based on Reverse-Shell-CS open-source software. It allows malicious actors to remotely connect to target computers via a reverse shell.
Operating routine
BackDoor.ShellNET.1 connects to the C2 server at 188[.]127.227[.]226. Next, it runs the cmd.exe command prompt in silent mode, allowing attackers to remotely execute commands on the infected computer.