Currently viewing ATT&CK v17.1 which is the current version of ATT&CK. Learn more about the versioning system or see the live site.

ZxxZ

ZxxZ is a trojan written in Visual C++ that has been used by BITTER since at least August 2021, including against Bangladeshi government personnel.[1]

ID: S1013
Type: MALWARE
Platforms: Windows
Version: 1.1
Created: 02 June 2022
Last Modified: 10 April 2024

Techniques Used

Domain ID Name Use
Enterprise T1005 Data from Local System

ZxxZ can collect data from a compromised host.[1]

Enterprise T1140 Deobfuscate/Decode Files or Information

ZxxZ has used a XOR key to decrypt strings.[1]

Enterprise T1105