New Duqu virus linked to Microsoft Word Documents

November 4, 2011 by Bob Yirka report

Microsoft

Enlarge

I new virus has cropped up in various countries across the world and its target appears to be corporate networks. The Duqu virus, first noted last month by a laboratory at Budapest University, has now been spotted in several other countries and appears to be sent via Microsoft Word documents attached as emails. Microsoft has announced that it is working on a fix.

The point of the seems to be to gather corporate information and then send it to some as yet unknown site. Thus, it’s a form of corporate espionage. Chillingly, researchers at Symantec, the giant antivirus company, say it looks like some of the code in the is the same as was found in the Stuxnet virus that wreaked havoc on Iran’s nuclear program, indicating that the perpetuators were either able to obtain the code from that virus, or, are the same people.

The virus is activated when a person to whom an infected Word document was sent, opens it. The virus infects that computer then seeks out other computers through the corporate network. As it goes, it collects data and then apparently, seeks a path out to the Internet where it can send the data it’s collected to a predefined destination. Thus far it has relied on a so-named zero day exploit to take advantage of a previously unknown weakness in the Windows kernel, which means getting in and doing its dirty work before victims have a chance to come up with a means of defense against it.

Thus far, it appears that the virus has been targeted at specific types of companies, as the data- collecting part of the virus seems to seek out information pertaining to industrial control-systems. So it’s likely that whoever unleashed the virus, did so in hopes of gaining information on how companies are designing and manufacturing their products; not something the average person would need to worry about, but still enough to cause concern about the growing sophistication of computer viruses.

So far, instances of the virus have been seen in Iran, India, France, Ukraine, the UK and at least eight other countries that have not been specifically identified.

© 2011 PhysOrg.com

Filter


Move the slider to adjust rank threshold, so that you can hide some of the comments.


Display comments: newest first

aliasvinu
Nov 04, 2011

Rank: not rated yet
another tragedy..
MadLintElf
Nov 04, 2011

Rank: 5 / 5 (2)
The next war will be fought on the internet, not on the ground. When they said information was king, and equally valuable as money they were right.

Stuxnet was only the beginning of our "Brave new World".

Cheers,

Bill
sherriffwoody
Nov 04, 2011

Rank: not rated yet
Imagine how cool software and the internet could be if it wasn't for the a&& holes.
la7dfa
Nov 04, 2011

Rank: 5 / 5 (2)
Imagine how cool software and the internet could be if it wasn't for the a&& holes.


We actually depend on someone challenging the software.
Just like our body needs to exercise the immune system.
Otherwise we would be wide open for attacs.
MadLintElf
Nov 04, 2011

Rank: not rated yet
Yep, security by obscurity only worked in the 70's.
Jotaf
Nov 04, 2011

Rank: 5 / 5 (3)
The real tragedy is how a professional writer inserts commas arbitrarily in the middle of sentences...
Vendicar_Decarian
Nov 05, 2011

Rank: 2 / 5 (4)
Israel with the probable assistance of the U.S. was the origin of Stuxnet which targeted the Iranian Nuclear enrichment program.

Either Israel or the U.S. are now complicit in this corporate espionage attack on their allies in Europe and elsewhere, or as I said at the time of the Stuxnet attack, the Stuxnet software would be reverse engineered and used against western interests.

In any case, Israel with the probable assistance of the U.S. are ultimately responsible for this latest virus as they wrote much of the code for the existing infection.

Remember. Vendicar is almost always right, and Israel is the
enemy of all moral, thinking people.
Osiris1
Nov 05, 2011

Rank: 1 / 5 (1)
'Duqu'....as in 'Count DooKoo' the 'Sith' (reverse last two letters and wadda u get) Lord from Star Wars?? Maybe 'da Farce'////awww da 'Force' can defeat it. Where is Luke Swampwater when ya needs him.
Vendicar_Decarian
Nov 05, 2011

Rank: 1 / 5 (2)
Luke died from Antarian Anal Ringworrm back in the Duvonian period.

Components of his light saber on on display at the Harkonen public trust building 128 Bertan street on the planet of Guidi prime.

Admission 1428*10**-23 Ningies
Rank 5 /5 (6 votes)
Relevant PhysicsForums posts

More news stories

Browser wars flare in mobile space

The browser wars are heating up again, but this time the fight is for dominance of the mobile Internet.

Technology / Software

created 9 hours ago | popularity 5 / 5 (1) | comments 3

Probability of contamination from severe nuclear reactor accidents is higher than expected: study

Catastrophic nuclear accidents such as the core meltdowns in Chernobyl and Fukushima are more likely to happen than previously assumed. Based on the operating hours of all civil nuclear reactors and the number ...

Technology / Energy & Green Tech

created May 22, 2012 | popularity 3.6 / 5 (22) | comments 56 | with audio podcast

SpotterRF debuts Radar Backpack Kit (w/ Video)

(Phys.org) -- SpotterRF has announced a special radar backpack kit designed to enhance situational awareness for soldiers on the ground. The company says its special radar is designed for warfighters as part ...

Technology / Hi Tech & Innovation

created May 26, 2012 | popularity 5 / 5 (5) | comments 13 | with audio podcast report

HyperSolar shows dirty water no barrier to power world

(Phys.org) -- The Santa Barbara, California, company, HyperSolar, is set to transparently share the ups and downs of its research experiences toward the company’s ultimate vision, successfully producing ...

Technology / Energy & Green Tech

created May 24, 2012 | popularity 4.8 / 5 (16) | comments 17 | with audio podcast report

Tesla to launch electric sedan in US on June 22

Tesla Motors said Tuesday it would begin deliveries of "the world's first premium electric sedan" on June 22, slightly ahead of schedule.

Technology / Energy & Green Tech

created May 22, 2012 | popularity 4.5 / 5 (12) | comments 18


'Unzipped' carbon nanotubes could help energize fuel cells, batteries

Multi-walled carbon nanotubes riddled with defects and impurities on the outside could replace some of the expensive platinum catalysts used in fuel cells and metal-air batteries, according to scientists at ...

T cells 'hunt' parasites like animal predators seek prey, study shows

By pairing an intimate knowledge of immune-system function with a deep understanding of statistical physics, a cross-disciplinary team at the University of Pennsylvania has arrived at a surprising finding: T cells use a movement ...

Computer model used to pinpoint prime materials for efficient carbon capture

When power plants begin capturing their carbon emissions to reduce greenhouse gases – and to most in the electric power industry, it's a question of when, not if – it will be an expensive undertaking.

Change in developmental timing was crucial in the evolutionary shift from dinosaurs to birds: study

At first glance, it's hard to see how a common house sparrow and a Tyrannosaurus Rex might have anything in common. After all, one is a bird that weighs less than an ounce, and the other is a dinosaur that ...

Yale study concludes public apathy over climate change unrelated to science literacy

Are members of the public divided about climate change because they don't understand the science behind it? If Americans knew more basic science and were more proficient in technical reasoning, would public consensus match ...

Same gene that stunts infants' growth also makes them grow too big: research

UCLA geneticists have identified the mutation responsible for IMAGe* syndrome, a rare disorder that stunts infants' growth. The twist? The mutation occurs on the same gene that causes Beckwith-Wiedemann syndrome, which makes ...