s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-php.parrot_tds_shell

📛 Threat Title

Malware family: Parrot TDS WebShell

Category: Parrot TDS WebShell First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `php.parrot_tds_shell`. Printable name: Parrot TDS WebShell.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (10)

  • web:advisory.eventussecurity.com

    The insights provided by researchers contribute to the understanding of Parrot TDS and assist in developing strategies for detection and mitigation against this long-standing threat.

  • web:cybernext.ai

    This blog explores the threat of Parrot TDS , a cyber campaign leveraging dynamic code injection into JavaScript on compromised sites to redirect visitors to phishing or malware . Learn about its methods, from exploiting CMS vulnerabilities to delivering malicious payloads, and discover actionable defenses for enterprises.

  • web:malpedia.caad.fkie.fraunhofer.de

    Parrot TDS WebShell Propose Change In combination with Parrot TDS the usage of a classical web shell was observed by DECODED Avast.io.

  • web:note.f5.pm

    A traffic direction system ( TDS ) nicknamed Parrot TDS has been publicly reported as active since October 2021. Websites with Parrot TDS have malicious scripts injected into existing JavaScript code hosted on the server.

  • web:redpiranha.net

    Parrot TDS new cyber threat called Parrot TDS has infected over 16,500 websites, including university and government sites. This system redirects users to malicious campaigns like FakeUpdate, which tricks them into downloading remote access tools. Unlike prior threats, Parrot TDS targets a wider range of poorly secured websites, putting millions at risk. Researchers identified a surge in ...

  • web:unit42.paloaltonetworks.com

    Traffic detection system Parrot has infected tens of thousands of websites worldwide. We outline the scripting evolution of this injection campaign and its scope.

  • web:www.bleepingcomputer.com

    Security researchers looking at more than 10,000 scripts used by the Parrot traffic direction system ( TDS ) noticed an evolution marked by optimizations that make malicious code stealthier against ...

  • web:www.darkreading.com

    Millions at Risk As 'Parrot' Web Server Compromises Take Flight The cyberattackers behind the traffic redirection system ( TDS ) inject websites with malicious scripts, have control over thousands ...

  • web:www.sangfor.com

    Parrot TDS - Traffic Direction System infected 16,500+ websites for malware distribution. Here are recommendations and remediations by Sangfor.

  • web:www.techradar.com

    Parrot TDS was first discovered in April 2022, by cybersecurity researchers from Avast. It was then said that the script was probably active since 2019, managing to infect more than 16,500 websites.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.