

 Tool: ZeroCleare
 Tool: ZeroCleare| Names | ZeroCleare ZEROCLEAR | |
| Category | Malware | |
| Type | Wiper | |
| Description | (IBM) New malware from the wiper class, used in a destructive attack in the Middle East. We named this malware “ZeroCleare” per the program database (PDB) pathname of its binary file. | |
| Information | <https://securityintelligence.com/posts/new-destructive-wiper-zerocleare-targets-energy-sector-in-the-middle-east/> | |
| MITRE ATT&CK | <https://attack.mitre.org/software/S1151> | |
| Malpedia | <https://malpedia.caad.fkie.fraunhofer.de/details/win.zerocleare> | |
| AlienVault OTX | <https://otx.alienvault.com/browse/pulses?q=tag:ZeroCleare> | |
Last change to this tool card: 02 March 2025
Download this tool card in JSON format
| Changed | Name | Country | Observed | ||
| APT groups | |||||
| OilRig, APT 34, Helix Kitten, Chrysene |  | 2014-Sep 2024 |  | ||
1 group listed (1 APT, 0 other, 0 unknown)
| Digital Service Security Center Follow us on    | Report incidents | |
|  | +66 (0)2-123-1227 | |
|  | [email protected] | |