That's interesting, I had not heard of Duqu. Looks like it might be a recon virus to analyze targets for future attacks. Out of all the signatures, the fact that it removes itself after a configurable number of days is the scariest to me. The authors obviously want to get it, find things out, then get out without being detected. Classic espionage and recon.
Judah On Wed, Apr 25, 2012 at 7:57 PM, LRS Scout <[email protected]> wrote: > > Duqu is likely the same sort of situation. > > Good example. > ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| Order the Adobe Coldfusion Anthology now! http://www.amazon.com/Adobe-Coldfusion-Anthology/dp/1430272155/?tag=houseoffusion Archive: http://www.houseoffusion.com/groups/cf-community/message.cfm/messageid:350263 Subscription: http://www.houseoffusion.com/groups/cf-community/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/groups/cf-community/unsubscribe.cfm
