BleepingComputer.com: W32.Duqu: The Precursor to the Next Stuxnet

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

W32.Duqu: The Precursor to the Next Stuxnet according to Symantec

#1 User is offline   Animal 

  • Bleepin' Animinion
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Site Admin
  • Posts: 18,935
  • Joined: 18-August 05
  • Gender:Male
  • Location:Location, Location

Posted 18 October 2011 - 04:39 PM

According to Symantec, Duqu is the precursor to another Stuxnet type attack. However Duqu does not contain industrial like controls. It is primarily a remote access Trojan.

Quote

On October 14, 2011, a research lab with strong international connections alerted us to a sample that appeared to be very similar to Stuxnet. They named the threat "Duqu" [dyü-kyü] because it creates files with the file name prefix “~DQ”. The research lab provided us with samples recovered from computer systems located in Europe, as well as a detailed report with their initial findings, including analysis comparing the threat to Stuxnet, which we were able to confirm. Parts of Duqu are nearly identical to Stuxnet, but with a completely different purpose.


Complete Symantec article: http://www.symantec.com/connect/w32_duqu_precursor_next_stuxnet

More on Duqu from Wired.com by Kim Zetter: http://www.wired.com/threatlevel/2011/10/son-of-stuxnet-in-the-wild/

Quote

A little more than one year after the infrastructure-destroying Stuxnet worm was discovered on computer systems in Iran, a new piece of malware using some of the same techniques has been found infecting systems in Europe, according to researchers at security firm Symantec.


The new malware, dubbed “Duqu” [dü-kyü], contains parts that are nearly identical to Stuxnet and appears to have been written by the same authors behind Stuxnet, or at least by someone who had direct access to the Stuxnet source code, says Liam O Murchu.

The Internet is so big, so powerful and pointless that for some people it is a complete substitute for life.
Andrew Brown

Posted Image
A learning experience is one of those things that say, "You know that thing you just did? Don't do that." — Douglas Adams.
Why is the word abbreviation so long?
Follow BleepingComputer on: Facebook | Twitter | Google+

#2 User is offline   keyboardNinja 

  • Bleepin' Ninja
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 4,791
  • Joined: 19-December 09
  • Gender:Male
  • Location:teh interwebz

Posted 18 October 2011 - 06:22 PM

Scary. :blink:
PICNIC - Problem In Chair, Not In Computer

Posted Image Posted Image

20 Things I Learned About Browsers and the Web

#3 User is offline   killerx525 

  • Bleepin' Aussie
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Members
  • Posts: 5,431
  • Joined: 27-September 09
  • Gender:Male
  • Location:Melbourne, Australia

Posted 19 October 2011 - 12:24 AM

O.O, life is just cruel sometimes.
>Michael
System: CPU- AMD Phenom II X6 1090T Black Edition Oc'ed to 3.8GHz, CPU Cooler- Noctua NH-D14, RAM- G.Skill Ripjaws X F3-12800CL9D-8GBXL 8G Kit(4Gx2) DDR3 1600, HDD- Western Digital Caviar Black 1TB 7200 RPM 64MB Cache SATAIII, GPU- Asus EAH6950 1GB Crossfire Oc'ed 900/1310mhz, MB- Gigabyte 990FXA-D3, Case- Coolermaster HAF 932, PSU- Corsair TX-750 V2, Soundcard- Realtek High Definition Audio Sound, OS- Windows 7 Ultimate SP1 64-Bit

#4 User is offline   keyboardNinja 

  • Bleepin' Ninja
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 4,791
  • Joined: 19-December 09
  • Gender:Male
  • Location:teh interwebz

Posted 01 November 2011 - 02:37 PM


Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users