Doubledrag, Doubledrop, and Doubleback are the work of “experienced” threat actors.
Article Link: https://www.zdnet.com/article/researchers-find-three-new-malware-families-used-in-global-finance-phishing-campaign/#ftag=RSSbaffb68