I recently got contacted on Twitter in regards to a hacked webpage:
After I received the files two things became apparent:
- the webserver (and thus the website) was infected with C99shell
- the webserver was infected with other PHP backdoors
more here.........http://bartblaze.blogspot.com/2015/03/c99shell-not-dead.html
After I received the files two things became apparent:
- the webserver (and thus the website) was infected with C99shell
- the webserver was infected with other PHP backdoors
more here.........http://bartblaze.blogspot.com/2015/03/c99shell-not-dead.html