XSLCmd
Description
(FireEye) The backdoor code was ported to OS X from a Windows backdoor that has been used extensively in targeted attacks over the past several years, having been updated many times in the process. Its capabilities include a reverse shell, file listings and transfers, installation of additional executables, and an updatable configuration. The OS X version of XSLCmd includes two additional features not found in the Windows variants we have studied in depth: key logging and screen capturing.
Names
Name |
---|
XSLCmd |
Category
Malware
Type
- Backdoor
- Keylogger
- Info stealer
Information
- https://www.fireeye.com/blog/threat-research/2014/09/forced-to-adapt-xslcmd-backdoor-now-on-os-x.html
- https://objective-see.com/blog/blog_0x16.html
Malpedia
Alienvault Otx
Other Information
Uuid
242f0523-a5dc-4740-9d05-ef93f014abad
Last Card Change
2020-07-02