Threat Description

Exploit:​PHP/Preamble

Details

Category: Malware
Type: Vulnerability, Exploit
Platform: PHP

Summary


Exploit:PHP/Preamble is a detection for a family of various PHP scripts.

The scripts are used to test whether a particular site is vulnerable for a Remote File Inclusion (RFI) exploitation.



Removal


Automatic action

Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.

More

Detailed instructions for F-Secure security products are available in the documentation found in the Downloads section of our Home - Global site.

You may also refer to the Knowledge Base on the F-Secure Community site for further assistance.



Technical Details


An exploit is a short code that uses a vulnerability in an operating system or other software to run unauthorized code on target computers.

The scripts belonging to this family are usually used to test whether a site or a webpage is vulnerable to a Remote File Inclusion (RFI) vulnerability.

The scripts test various methods an attacker can use to introduce a malicious backdoor script onto the affected server.






SUBMIT A SAMPLE

Suspect a file or URL was wrongly detected? Submit a sample to our Labs for analysis

Submit Now

Give And Get Advice

Give advice. Get advice. Share the knowledge on our free discussion forum.

Learn More