Become a fan of Slashdot on Facebook

 



Forgot your password?
typodupeerror
DEAL: For $25 - Add A Second Phone Number To Your Smartphone for life! Use promo code SLASHDOT25. Also, Slashdot's Facebook page has a chat bot now. Message it for stories and more. Check out the new SourceForge HTML5 internet speed test! ×
Security

Submission + - Mystery 'Wiper' malware likely written on Tilded cyber-malware platform (techworld.com)

concertina226 writes: It appeared from nowhere last April, attacked computers in Iran and then destroyed almost all evidence of its existence. So what was the super-destructive malware now dubbed ‘Wiper’?

Evidence for the malware emerged in April after the Iranian Oil Ministry announced that some of its installations had been attacked by a ‘worm’ that was deleting numerous types of data files from hard drives.

Because the malware was designed to remove all traces of its existence, the job of hunting it down has proved hard work. The company’s best guess is that it was written on what is called the ‘Tilded’ cyber-malware platform which means it must be related to Stuxnet malware and its mysterious companion, Duqu.

The evidence? Mainly, tiny pointers that Wiper had named a registry key using the same file-naming format as Duqu as well as forensic evidence that it did the same for its temp files.

This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Mystery 'Wiper' malware likely written on Tilded cyber-malware platform

Comments Filter:

I find you lack of faith in the forth dithturbing. - Darse ("Darth") Vader

Working...