Skip to content

Malware

VBREVSHELL

According to Mandiant, VBREVSHELL is a VBA macro that spawns a reverse shell relying exclusively on Windows API calls.

VBREVSHELL is a VBScript malware family.

Background

Mandiant reports that VBREVSHELL is a VBA macro that creates a reverse shell using nothing but Windows API calls.


Source: Malpedia (Fraunhofer FKIE).