DEADWOOD
S1134 · Windows
DEADWOOD is wiper malware written in C++ using Boost libraries. DEADWOOD was first observed in an unattributed wiping event in Saudi Arabia in 2019, and has since been incorporated into Agrius operations.
ATT&CK S1134
Sigma rules0
YARA rules0
Live IOCs0