[php] wso 2.5.1 shell backdoor


[php] wso 2.5.1 shell backdoor#
WSO is a PHP shell backdoor that provide an interface for various remote operations. It can perform everything from remote code execution, bruteforcing of servers, provide server information, and more.

Download (packetstorm) Link :

Authorization for the cookies
Server Information
File manager (copy, rename, move, delete, chmod, touch, create files and folders)
View, hexview, editing, downloading, uploading files
Working with zip archives (packing, unpacking) + compression tar.gz
SQL Manager (MySql, PostgreSql)
Execute PHP code
Working with Strings + hash search online databases
Bindport and back-Connect (Perl)
Bruteforce FTP, MySQL, PgSQL
Search files, search text in files
Support for * nix-like and Windows systems
Antipoiskovik (check User-Agent, if a search engine then returns 404 error)
You can use AJAX
Small size. Packaged version is 22.8 Kb
The choice of encoding, which employs a shell.

Changelog (v2.5.1):
Remove comments from the first line .
Added option to dump certain columns of tables.
the size of large files are now well defined .
in the file properties field "Create time" changed to "Change time" ([link]).
Fixed a bug that caused not working mysql brute force if there was a port of the server .
Fixed a bug due to which one can not see the contents of a table called download in the database.

Youtube link :

Anonymouse | 188.50.43.*20.12.2012 15:18
re: [php] wso 2.5.1 shell backdoor#
The best ever, but I hope you get to the ways of Use
maron | 173.254.216.*21.12.2012 21:21
re: [php] wso 2.5.1 shell backdoor#
Can you skip really disable safe mode?
misl | 91.197.129.*21.12.2012 21:24
re: [php] wso 2.5.1 shell backdoor#
wonderful experience backdoor
i think it will be better than c99
machen | 85.31.186.*21.12.2012 21:26
re: [php] wso 2.5.1 shell backdoor#
I got infected today with wso. Awesome code and not believing features. How can i harden my server that wso cannot show other users files/folders?
server fix | 178.165.130.*12.12.2014 14:09