Malware
LiteDuke
According to CarbonBlack, LiteDuke is a third stage backdoor.
LiteDuke is a Windows malware family operated by APT29.
Background
CarbonBlack describes LiteDuke as a third-stage backdoor that seems to share its dropper with PolyglotDuke. Its payload keeps configuration data in an AES-encrypted SQLite database, and the backdoor offers a broad command set covering host information gathering, file upload and download, and execution of additional code. Its C2 endpoints look like compromised servers, which it reaches through ordinary HTTP requests while using a believable User-Agent string to blend into normal traffic. ESET named it LiteDuke because it stores information such as its configuration in SQLite.
Source: Malpedia (Fraunhofer FKIE).