Read the original article: IceRat evades antivirus by running PHP on Java VM
IceRat keeps low detections rates for weeks by using an unusual language implementation: JPHP. But there are more reasons than the choice of the compiler.
This article explores IceRat and explains a way to analyze JPHP malware.
Read the original article: IceRat evades antivirus by running PHP on Java VM