Compare Gadgets Vs. Compare

New evidence of Flame malware 'suicide' code

New evidence of Flame malware 'suicide' code Created by MG1 on Jun 11, 2012

Security firm Symantec has witnessed Flame malware removing itself from infected machines, overwriting the information with random characters to cover its tracks. This process was discovered late last week on Symantec's "honeypot" computers, or machines that are purposely infected with malware for the purpose of monitoring and studying its behavior. Symantec's blog post on the finding says the instigating file is called "browse32.exe" and it uninstalls all traces of the malware — including this file — and replaces it with randomly generated characters, effectively blocking any attempt to investigate its presence. The so-called 'suicide' code was not successful at removing Flame from Symantec... »read more

More at: TheVerge Add additional source

Post your comment

Want to post a comment? Only registered users can post, please log in or register.