Owlproxy

First seen
2019-06-01 00:00:00
Malware type
trojan, backdoor
Profile updated
2026-07-07 13:23:08

Targeted industries: government-and-public-sector technology-and-telecommunications

Context

Owlproxy is a Trojan malware that acts as a proxy to facilitate remote access to compromised networks. It is used predominantly in cyber-espionage campaigns targeting sensitive sectors.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Owlproxy_Auto (yara-rule)

Reports & references

  • ESET — Eset Gelsemium (report)
  • Kaspersky — 106868 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Owlproxy (report)
  • lab52.io — Chimera Apt Updates On Its Owlproxy Malware (report)
  • medium.com — Taiwan Government Targeted By Multiple Cyberattacks In April 2020 3B20Cea1Dc20 (report)

External references