Gazer malware

GPTKB entity

Statements (23)
Predicate Object
gptkbp:instanceOf malware
gptkbp:abilities remote access
data exfiltration
command and control communication
gptkbp:alsoKnownAs gptkb:WhiteBear
gptkbp:discoveredBy gptkb:ESET
2016
https://www.w3.org/2000/01/rdf-schema#label Gazer malware
gptkbp:operatingSystem gptkb:Microsoft_Windows
gptkbp:relatedTo gptkb:Turla_malware_family
gptkbp:removes gptkb:ESET_security_products
gptkbp:signature injects code into processes
modifies Windows registry
uses custom encryption
gptkbp:spreadTo spear phishing
gptkbp:supportsProtocol encrypted channels
gptkbp:target government organizations
diplomatic organizations
gptkbp:type backdoor
gptkbp:usedBy gptkb:Turla_group
gptkbp:writtenBy gptkb:C++
gptkbp:bfsParent gptkb:TA-64
gptkbp:bfsLayer 5