Blog | G5 Cyber Security

Cyber weapons factory still operating it’s just the beginning

A new instance of Duqu has been isolated in a variant designed to evade detection mechanism of antivirus products and other security systems. The number of incidents related to Duqu is at least of 21, most of them located in Iran. The last sightings of malware Duqu date back to last year, when its creators have tried to delete any evidence of their operations deleting all the information on the servers used in the past years. The new driver is called mcd9x86.sys and it was compiled on Feb 23 2012.”]

Source: https://securityaffairs.co/wordpress/3716/malware/duqu-cyber-weapons-factory-still-operating-its-just-the-beginning.html

Exit mobile version