Gdrive

Aliases: DoomDrive, GoogleDriveSucks

First seen
2020-04-01 00:00:00
Malware type
downloader, spyware
Family
Malware family
Profile updated
2026-07-07 12:57:03

Targeted industries: technology-and-telecommunications government-and-public-sector

Context

According to Unit 42, this is a .NET X64 malware that is capable of interaction with GoogleDrive, allowing an attacker to have victim information uploaded and payloads delivered.

Reports & references

  • services.google.com — Gcat Threathorizons Full Apr2023 (report)
  • r136a1.info — A Look Into Apt29S New Early Stage Google Drive Downloader (report)
  • Palo Alto Unit 42 — Cloaked Ursa Online Storage Services Campaigns (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Gdrive (report)

External references