Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

September 11th, 2012, 15:16 GMT · By

BLOG

Shamoon Created by American-Hater Amateur Developers

SHARE:

Adjust text size:


Shamoon developers user burning US flag picture for garbage data Enlarge picture - Shamoon developers user burning US flag picture for garbage data
The Shamoon malware – the one that has been named the number one suspect in the attacks that targeted Saudi Aramco – appears to be created by politically-driven skilled amateurs. At least, that’s what security researchers from Kaspersky concluded.

After further analyzing the threat, experts noticed that the destructive functionality of the Trojan offers some clues to the motivation of its creators. Shamoon destroys files by filling them with garbage content.

The garbage content is actually taken from a picture of a burning US flag, most likely taken from Wikipedia.

Another noteworthy finding is that the creators of Shamoon utilized a legitimate kernel-mode application, more precisely they used the signed drivers of RawDisk, a piece of software made by Eldos.

Experts warn driver developers that such methods are becoming more common, malware authors turning to legitimate drivers in order to perform malicious tasks.

However, the cybercriminals made some amateurish mistakes while building the malware, which leads researchers to believe that they’re skilled amateurs at best.

TELL US WHAT YOU THINK:

1,385 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Shamoon Malware Covers Its Tracks by Wiping Master Boot Record

Unknown Virus Disrupts World’s Second Largest Liquefied Natural Gas Company

Researchers Unable to Link Mysterious Wiper Malware to Flame

Saudi Aramco Breach Investigators Insist Insiders Are Involved

Oil Company Saudi Aramco Hacked, Sensitive Information Possibly Stolen

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM