Showing posts with label 660. Show all posts
Showing posts with label 660. Show all posts

Monday, August 20, 2012

Twenty-four hours in which Stuxnet died/




 Deep within the block configuration Stuxnet, a malicious program that attacked the order fairly matched omnifarious Iranian organization is a hidden variable. Fair sex stores a code that read the data points on 24 June 2012, it turns out that it is this date of stopping the proliferation of Stuxnet procedures and infection due to the portable drive. Experts from Kaspersky Lab are going on stage again and analyze the relationships that date with another worm Duqu cyberbronią specific variable that stores the information about the "date of death" Stuxnet, is shown in the picture below (red box) "00 c0 45 51 4c 9c compact 01" in a standard format timestamp 64bit Windows is day 24 June 2012, the three currently known variants of Stuxnet are published at different times. Dominates ± cy exhaust released into the wild nature of June 23, 2009 At 5:40 Polish time. Another version appeared on 28 June and 7 July. June 24, 2012, the, alias after three years ± d ever since the first show, the Stuxnet cyber criminal activities completed his research is the fact that the date of June 24 has a plus relationship with another cyberbronią Duqu worm, called Stuxnet heir. During the detailed analysis of all three known Duqu drivers, Kaspersky Lab experts have noted that the code of one of them, detected 3 November 2011, contains "0xAE240682" (red box in the picture below). Member 0xAE very regularly appears in the code, however, Duqu Stuxnet. His reputation still remains a mystery, atolls, it seems that this is the beloved quantum code Duqu and Stuxnet creators. The remaining portion of the 0xAE240682 may be read as 24.06 82 and if he will treat it in the category of date, it will be thoroughly planned 30 years before "death" Stuxnet. Date 24 June 1982 is interesting in itself is related to the incident, British Airways Flight 9, known as the "Speedbird 9" or "incident in Jakarta". That very day, City of Edinburgh flew Boeing 747236B in a cloud of dust ejected by the volcano Galunggung desire and at this point all four engines machine refused to obey. The causes of failure were not clear to the crew or ground control similarly for. During the glide plane left a cloud of volcanic ash, and the crew managed to restore the engines and land the job. "Unfortunately, no one speaks ± c alone cyber criminals involved in the theory Stuxnet / Duqu can certainly backwater to evaluate aspects, what stopped Stuxnet patiently spread 30 years after the incident, nor why this date is encoded in one of the procedures Duqu. does not look like b ± DL to the case .. "says Costin Raiu, a professional with Kaspersky