Statements (27)
| Predicate | Object |
|---|---|
| gptkbp:instanceOf |
gptkb:malware
|
| gptkbp:abilities |
file upload
command execution file download system information collection |
| gptkbp:alsoKnownAs |
gptkb:WellMess_malware
|
| gptkbp:category |
gptkb:cyber_espionage_tool
|
| gptkbp:discoveredBy |
gptkb:UK_National_Cyber_Security_Centre
|
| gptkbp:firstReported |
2018
|
| gptkbp:notableBattle |
gptkb:2020_COVID-19_vaccine_research_cyberattacks
|
| gptkbp:platform |
gptkb:Windows
gptkb:Linux |
| gptkbp:revealedTo |
gptkb:UK_National_Cyber_Security_Centre
gptkb:Canadian_Communication_Security_Establishment gptkb:US_Cybersecurity_and_Infrastructure_Security_Agency |
| gptkbp:supportsProtocol |
gptkb:HTTP
gptkb:WebSocket HTTPS |
| gptkbp:target |
COVID-19 vaccine research organizations
|
| gptkbp:type |
gptkb:Trojan
|
| gptkbp:usedBy |
gptkb:Cozy_Bear
threat actor APT29 |
| gptkbp:writtenBy |
gptkb:Go
gptkb:.NET |
| gptkbp:bfsParent |
gptkb:Cozy_Bear
|
| gptkbp:bfsLayer |
6
|
| https://www.w3.org/2000/01/rdf-schema#label |
WellMess
|