X-Tunnel (.NET) (Malware Family) By Fraunhofer FKIE Archived: 2026-04-05 13:08:30 UTC win.xtunnel_net (Back to overview) X-Tunnel (.NET) Actor(s): APT28 This is a rewrite of win.xtunnel using the .NET framework that surfaced late 2017. References 2018-10-04 ⋅ NCSC UK ⋅ NCSC UK Indicators of Compromise for Malware used by APT28 X-Tunnel (.NET) There is no Yara-Signature yet. Source: https://malpedia.caad.fkie.fraunhofer.de/details/win.xtunnel_net https://malpedia.caad.fkie.fraunhofer.de/details/win.xtunnel_net Page 1 of 1