X-Tunnel
Description
X-Tunnel is a network proxy tool that implements a custom network protocol encapsulated in the TLS protocol. win.xtunnel_net is a rewrite of win.xtunnel using the .NET framework that surfaced late 2017.
Names
Name |
---|
X-Tunnel |
XTunnel |
Shunnael |
Trojan.Shunnael |
XAPS |
Category
Malware
Type
- Tunneling
Information
- https://netzpolitik.org/2015/digital-attack-on-german-parliament-investigative-report-on-the-hack-of-the-left-party-infrastructure-in-bundestag/
- https://www.root9b.com/sites/default/files/whitepapers/R9b_FSOFACY_0.pdf
- https://www.root9b.com/sites/default/files/whitepapers/root9b_follow_up_report_apt28.pdf
- https://www.invincea.com/2016/07/tunnel-of-gov-dnc-hack-and-the-russian-xtunnel/
- http://www.welivesecurity.com/wp-content/uploads/2016/10/eset-sednit-part-2.pdf
- https://www.crowdstrike.com/blog/bears-midst-intrusion-democratic-national-committee/
- http://download.microsoft.com/download/4/4/C/44CDEF0E-7924-4787-A56A-16261691ACE3/Microsoft_Security_Intelligence_Report_Volume_19_English.pdf
- https://www.ncsc.gov.uk/alerts/indicators-compromise-malware-used-apt28
Mitre Attack
Malpedia
- https://malpedia.caad.fkie.fraunhofer.de/details/win.xtunnel
- https://malpedia.caad.fkie.fraunhofer.de/details/win.xtunnel_net
Other Information
Uuid
a8450b3f-871c-4628-8057-0880894101f1
Last Card Change
2022-12-30