Webshell detection tools can help us discover webshells and further investigate possible security vulnerabilities in the system.
This article recommends 10 Webshll detection tools for website intrusion troubleshooting. Of course, many host security products currently on the market also provide this WebShell detection capability, which will not be introduced here.
1. D Shield_Web Killer
Produced by Ah D, it uses a self-developed code analysis engine regardless of extensions, which can analyze more hidden WebShell backdoor behaviors.
Compatibility: Windows version only.
Tool download address:
http://www.d99net.net/down/WebShellKill_V2.0.9.zip
2. Baidu WEBDIR
The next generation WebShell detection engine uses advanced dynamic monitoring technology, combined with Zero-rule killing of multiple engines.
Compatibility: Provides online Trojan killing, free open API supports batch detection.
Online checking and killing address:
https://scanner.baidu.com/
3. Hippo
focuses on webshell checking and killing research, with a large number of webshell samples and independent checking and killing technology, using traditional features of cloud big data dual-engine scanning and killing technology. The killing speed is fast, the accuracy is high, and the false positives are low.
Compatibility: Supports Windows, Linux, and online scanning.
Official website:
https://www.shellpub.com/
4. Web Shell Detector
Webshell Detector has a "Webshell" signature database that helps identify up to 99 % of "webshell".
Compatibility: Provides php/python scripts for cross-platform and online detection.
Official website:
http://www.shelldetector.com/
github project address:
https://github.com/emposha/PHP-Shell-Detector
5. CloudWalker (Muyun)
No Completely, what is currently released is a command line version of the Webshell detection tool called, and the open source project has stopped updating.
Compatibility, Linux version is provided, Windows is not supported yet.
Online killing demo:
https://webshellchop.chaitin.cn/
github project address:
https://github.com/chaitin/cloudwalker
6. Deep learning model detection PHP Webshell
A deep learning PHP webshell killing engine demo, providing online sample detection.
Online checking address:
http://webshell.cdxy.me/
7. PHP Malware Finder
PHP-malware-finder is an excellent detection webshell Tool to obfuscate code with malware
Compatibility: Linux version is available, Windows is not supported yet.
github project address:
https://github.com/jvoisin/php-malware-finder
8. findWebshell
This project is a webshell checking tool developed based on python. Pattern matching checks for any type of webshell backdoor.
github project address:
https://github.com/he1m4n6a/findWebshell
9. Online webshell checking and killing tool
Online checking and killing address:
http://tools.bugscaner.com/killwebshell/
Recommended tutorial: Web server security
The above is the detailed content of Sharing of several common webshell detection tools. For more information, please follow other related articles on the PHP Chinese website!

Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

MinGW - Minimalist GNU for Windows
This project is in the process of being migrated to osdn.net/projects/mingw, you can continue to follow us there. MinGW: A native Windows port of the GNU Compiler Collection (GCC), freely distributable import libraries and header files for building native Windows applications; includes extensions to the MSVC runtime to support C99 functionality. All MinGW software can run on 64-bit Windows platforms.

Safe Exam Browser
Safe Exam Browser is a secure browser environment for taking online exams securely. This software turns any computer into a secure workstation. It controls access to any utility and prevents students from using unauthorized resources.

DVWA
Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is very vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, to help web developers better understand the process of securing web applications, and to help teachers/students teach/learn in a classroom environment Web application security. The goal of DVWA is to practice some of the most common web vulnerabilities through a simple and straightforward interface, with varying degrees of difficulty. Please note that this software

Dreamweaver Mac version
Visual web development tools

EditPlus Chinese cracked version
Small size, syntax highlighting, does not support code prompt function
