Skip to content

Malware

LocalOlive

According to Microsoft, this is a web shell, written in ASPX supporting C#, carrying sufficient yet rudimentary functionality to support the following secondary activities: uploading and downloading f

LocalOlive is a ASP malware family operated by Sandworm.

Background

Microsoft characterizes LocalOlive as an ASPX web shell with embedded C# that provides a basic but adequate set of follow-on capabilities. These include transferring files in both directions, executing shell commands, and listening on a network port (TCP 250 by default).


Source: Malpedia (Fraunhofer FKIE).