BootWreck

Description

(Flashpoint) Wiper malware that may have destroyed as many as 9,000 workstations and 500 servers inside the Banco de Chile in a late-May attack has similarities to the Buhtrap malware component known as MBR Killer, leaked to the underground in February 2016.

Analysts at Flashpoint reverse-engineered the identified malware linked to the May 24 attack against the country’s largest financial institution, and said the malware is a modified version of a MBR Killer module known as kill_os. MBR Killer infections render the local operating system and the Master Boot Record unreadable.

Names

Name
BootWreck
MBRkiller

Category

Malware

Type

  • Wiper

Information

Malpedia

Other Information

Uuid

ab8fab81-e119-4c00-94f6-15127b3f5db4

Last Card Change

2021-04-24