DEADWOOD

Description

(SentinelLabs) Agrius also utilized DEADWOOD (aka ‘Detbosit’), a wiper malware written in C++ using the Boost libraries. This wiper was previously reported, although barely discussed compared to other Middle-Eastern wiper malware. According to publicly available information, it was involved in a wiping attack in Saudi Arabia in 2019.

Names

Name
DEADWOOD
Detbosit
DETBOSIT
Agrius
SQLShred

Category

Malware

Type

  • Wiper

Information

Mitre Attack

Malpedia

Other Information

Uuid

f6865b31-78a2-45d8-b28c-46aa285542b6

Last Card Change

2024-12-27