# MultiLayer Wiper
> Tipo: **malware** · S1135 · [MITRE ATT&CK](https://attack.mitre.org/software/S1135)
## Descrição
[[s1135-multilayer-wiper|MultiLayer Wiper]] é um malware wiper escrito em .NET associado às operações do [[g1030-agrius|Agrius]]. Amostras observadas do [[s1135-multilayer-wiper|MultiLayer Wiper]] possuem uma data de compilação anômala e futura, sugerindo possível manipulação de metadados.
**Plataformas:** Windows
## Técnicas Utilizadas
- [[t1529-system-shutdownreboot|T1529 - System Shutdown/Reboot]]
- [[t1070-indicator-removal|T1070 - Indicator Removal]]
- [[t1565-001-stored-data-manipulation|T1565.001 - Stored Data Manipulation]]
- [[t1562-001-disable-or-modify-tools|T1562.001 - Disable or Modify Tools]]
- [[t1070-004-file-deletion|T1070.004 - File Deletion]]
- [[t1485-data-destruction|T1485 - Data Destruction]]
- [[t1027-009-embedded-payloads|T1027.009 - Embedded Payloads]]
- [[t1059-003-windows-command-shell|T1059.003 - Windows Command Shell]]
- [[t1070-001-clear-windows-event-logs|T1070.001 - Clear Windows Event Logs]]
- [[t1490-inhibit-system-recovery|T1490 - Inhibit System Recovery]]
- [[t1053-005-scheduled-task|T1053.005 - Scheduled Task]]
- [[t1070-006-timestomp|T1070.006 - Timestomp]]
- [[t1561-002-disk-structure-wipe|T1561.002 - Disk Structure Wipe]]
- [[t1083-file-and-directory-discovery|T1083 - File and Directory Discovery]]
## Grupos que Usam
- [[g1030-agrius|Agrius]]
## Referências
- [MITRE ATT&CK - S1135](https://attack.mitre.org/software/S1135)