A mystery computer virus discovered last month and deployed in a massive cyberattack chiefly against Iran sought to steal designs and PDF files from its victims, a Russian firm said.
Kaspersky Lab, one of the world’s biggest producers of anti-virus software, announced last month the discovery of the Flame virus, which it described as the biggest and most sophisticated malware ever seen.
In the latest update on Kaspersky’s analysis of the virus, released late Monday, the firm’s chief security expert, Alexander Gostev, said the malware’s creators had focussed on file formats such as PDF and AutoCAD, a software for computer design and drawing.
“The attackers seem to have a high interest in AutoCAD drawings,” Gostev said in a statement.
The malware also “goes through PDF and text files and other documents and makes short text summaries,” he added.
“It also hunts for e-mails and many different kinds of other ‘interesting’ (high-value) files that are specified in the malware configuration.”
He confirmed that Iran was by far the biggest target with a count of 185 infections, followed by 95 inIsrael and the Palestinian Territories, 32 in Sudan and 29 in Syria.
The discovery of Flame immediately sparked speculation that it had been created by US and Israeli security services to steal information about Iran’s controversial nuclear drive.
Intriguingly, Kaspersky said that hours after the existence of the virus was first announced on May 28, “The Flame command-and-control infrastructure, which had been operating for years, went dark.”
It gave no further information over the possible perpetrators of the mystery attack, though it identified about 80 domains that appear to belong to the Flame infrastructure, in locations from Hong Kong to Switzerland.
Kaspersky said it had used a procedure known as sinkholing — which allows Internet security experts to gain control of a malicious server — to analyse the operation.
During the sinkholing it found that on three computers in Lebanon, Iraq and Iran the Flame versions changed, suggesting Flame upgraded itself in the process.
The New York Times reported last week that President Barack Obama has accelerated cyberattacks on Iran’s nuclear programme in an operation codenamed “Olympic Games” that uses a malicious code developed with Israel.
Virginia Democrats are so fired up that the party chair had to scold them: ‘Sit down — be quit’
Democrats in Virginia are fired up as they gathered in Richmond for their annual gala dinner.
Political analysts believe the Democratic Party of Virginia has a good chance to win control of the state legislature in 2019's election, before setting their sights on the Commonwealth continuing its recent trend of voting Democratic in presidential elections.
Patrick Wilson, a political reporter for the Richmond Times-Dispatch, attended the event.
He reported that Democrats were so "noisy" that it was hard to hear the speakers, which include presidential candidates Sen. Amy Klobuchar (D-MN) and South Bend Mayor Pete Buttigieg.
‘Everyone knows what to expect’ at Trump’s Amway Center re-election kickoff
Donald Trump considers himself a legendary salesman, but can he really sell America on giving him four more drama-filled years at the White House?
Tuesday, he'll make his big pitch.
The 2020 reelection kickoff rally is being held in Orlando, Florida and campaign operations chief Michael Glassner says the "historic" event "has already generated tens of thousands of ticketing requests."
There's little mystery about how the night will go down.
Expect Trump, the self-promoting hero of his ghost-written book "The Art of the Deal," to claim the US economy is richer, the military stronger, and the country more respected than ever in history.
Florida man’s own family blasts him after he was arrested for racist threats: ‘This isn’t how we were raised’
After a Florida man was arrested for trying to start a race war, a member of his own family slammed his values.
"A Florida man’s social media posts that threatened violence against African-Americans, Jews and homosexuals and that urged his followers to start a race war netted him a $1 million bond," the Miami Herald reported Saturday. "And then there’s another $100,000 bond he would have to pay to get out of Lee County Jail because of a weapons charge."
Joshua Leff, 40, is being held in the Lee County Jail.