Skip to content

Malware

Gdrive

aka DoomDrive · GoogleDriveSucks

According to Unit 42, this is a .NET X64 malware that is capable of interaction with GoogleDrive, allowing an attacker to have victim information uploaded and payloads delivered.

Gdrive, also known as DoomDrive, GoogleDriveSucks, is a Windows malware family operated by APT 29 and APT29.

Background

Unit 42 describes this as a .NET X64 malware that communicates with GoogleDrive, letting an attacker upload data harvested from victims and push down payloads.


Source: Malpedia (Fraunhofer FKIE).