win.gdrive


aka: DoomDrive, GoogleDriveSucks

Actor(s): APT 29, APT29

According to Unit 42, this is a .NET X64 malware that is capable of interaction with GoogleDrive, allowing an attacker to have victim information uploaded and payloads delivered.

There is no Yara-Signature yet.