Tuesday, May 29, 2012

Flame: anatomy of a super-virus

0 comments

The Flame espionage virus, believed to target Iran, among others, has been identified as the most complex malicious software ever discovered. 

Flame : most complex malicious virus.

 

Security experts are still dissecting the Flame code, which is many times longer than any other computer virus, but some facts are clear:
Basics
Up to 20MB file (by comparison Stuxnet, which dmaage Iranian uranium centrifuges, is around 500KB)
Infects Windows XP, Windows Vista and Windows 7 systems
Detected in Iran, Russia, Egypt, the West Bank, Lebanon, Syria, Sudan
Espionage capabilities
Taking screenshots
Covert sound recording
Intercepting keyboard strokes
Monitoring network activity
Detects 100 types anti-virus software and conceals its presence
Creates a database to store stolen information
Communicates with command and control servers over encrypted channels
Propagation
Via USB sticks
On local networks via printers
As a self-spreading internet “worm” when directed by its controllers

source : Telegraph.co.uk


Post a Comment