Threat Intelligence Garden

Home

❯

EYE

EYE

Jul 03, 20251 min read

EYE

Description

(Palo Alto) The actor uses the EYE tool as a failsafe while they are logged into the system via RDP, as the tool will kill all processes created by the actor and remove other identifying artifacts if a legitimate user logs in.

Names

Name
EYE

Category

Malware

Type

  • Backdoor

Information

  • https://unit42.paloaltonetworks.com/xhunt-campaign-attacks-on-kuwait-shipping-and-transportation-organizations/

Other Information

Uuid

105f72de-dce0-48cd-bffc-501f57111e88

Last Card Change

2020-04-29


Graph View

  • EYE
  • Description
  • Names
  • Category
  • Type
  • Information
  • Other Information
  • Uuid
  • Last Card Change

Backlinks

  • Hisoka
  • index-tools
  • xHunt

Created with curiosity by The Handsome Zebra using Quartz v4.5.1 © 2025

  • | Contribute to this project on GitHub |
  • | Information Sourced from ETDA |