IceRat evades antivirus by running PHP on Java VM

Read the original article: IceRat evades antivirus by running PHP on Java VM


IceRat keeps low detections rates for weeks by using an unusual language implementation: JPHP. But there are more reasons than the choice of the compiler.
This article explores IceRat and explains a way to analyze JPHP malware.

 

Become a supporter of IT Security News and help us remove the ads.


Read the original article: IceRat evades antivirus by running PHP on Java VM

Liked it? Take a second to support IT Security News on Patreon!
Become a patron at Patreon!