Difference between revisions of "Disttrack sabotage malware wipes data at unnamed Middle East energy organization"

From Botnets.fr
Jump to navigation Jump to search
m (Text replacement - " www.securityweek.com" to "")
 
Line 1: Line 1:
{{Publication
{{Publication
|Image=Shamoon-Malware.png
|Image=Shamoon-Malware.png
|Legend=
|Botnet=DistTrack,
|Malware=,
|ExploitKit=,
|CCProtocol=,
|Operation=,
|Year=2012
|Date=2012-08-16
|Editor=Wired Business Media
|Link=http://www.securityweek.com/disttrack-sabotage-malware-wipes-data-unnamed-middle-east-energy-organization
|Author=Fahmida Y. Rashid,
|Abstract=Malware being used in a new series of targeted attacks has bucked the trend, choosing to destroy the computers it infects rather than just stealing sensitive information, security researchers said.
 
Called "Disttrack", the malware corrupts files, overwrites the infected machine's master boot record, and destroys the data so that it can't be recovered, according to reports from Symantec Security Response, Kaspersky Lab's Global Research and Analysis Team, and McAfee on Thursday. Disttrack has been observed in the Shamoon attacks, which has already affected at least one organization in the energy sector, Symantec said, but the company declined to provide any other details about the affected organization(s).
|Document=
|Document=
|Licence=
|Licence=
|Video=
|Video=
|Link=http://www.securityweek.com/disttrack-sabotage-malware-wipes-data-unnamed-middle-east-energy-organization
|Author=Fahmida Y. Rashid,
|NomRevue=Security Week
|NomRevue=Security Week
|Date=16 aug2012
|Editor=Wired Business Media
|Year=2012
|ISBN=
|ISBN=
|Page=
|Page=
|Abstract=Malware being used in a new series of targeted attacks has bucked the trend, choosing to destroy the computers it infects rather than just stealing sensitive information, security researchers said.
|Keyword=,
 
Called "Disttrack", the malware corrupts files, overwrites the infected machine's master boot record, and destroys the data so that it can't be recovered, according to reports from Symantec Security Response, Kaspersky Lab's Global Research and Analysis Team, and McAfee on Thursday. Disttrack has been observed in the Shamoon attacks, which has already affected at least one organization in the energy sector, Symantec said, but the company declined to provide any other details about the affected organization(s).
|Botnet=DistTrack,
|Malware=,
|ExploitKit=,
|CCProtocol=,
|Operation=,
|Keyword=,  
}}
}}

Latest revision as of 23:27, 21 March 2016

(Publication) Google search: [1]

Disttrack sabotage malware wipes data at unnamed Middle East energy organization
Shamoon-Malware.png
Botnet DistTrack
Malware
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2012 / 2012-08-16
Editor/Conference Wired Business Media
Link http://www.securityweek.com/disttrack-sabotage-malware-wipes-data-unnamed-middle-east-energy-organization (Archive copy)
Author Fahmida Y. Rashid
Type

Abstract

Malware being used in a new series of targeted attacks has bucked the trend, choosing to destroy the computers it infects rather than just stealing sensitive information, security researchers said.

Called "Disttrack", the malware corrupts files, overwrites the infected machine's master boot record, and destroys the data so that it can't be recovered, according to reports from Symantec Security Response, Kaspersky Lab's Global Research and Analysis Team, and McAfee on Thursday. Disttrack has been observed in the Shamoon attacks, which has already affected at least one organization in the energy sector, Symantec said, but the company declined to provide any other details about the affected organization(s).

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2012BFR1099,
   editor = {Wired Business Media},
   author = {Fahmida Y. Rashid},
   title = {Disttrack sabotage malware wipes data at unnamed Middle East energy organization},
   date = {16},
   month = Aug,
   year = {2012},
   howpublished = {\url{http://www.securityweek.com/disttrack-sabotage-malware-wipes-data-unnamed-middle-east-energy-organization}},
 }