Duqu
Description
(Wikipedia) Duqu is a collection of computer malware discovered on 1 September 2011, thought to be related to the Stuxnet worm and to have been created by Unit 8200. The Laboratory of Cryptography and System Security (CrySyS Lab) of the Budapest University of Technology and Economics in Hungary discovered the threat, analysed the malware, and wrote a 60-page report naming the threat Duqu. Duqu got its name from the prefix ‘~DQ’ it gives to the names of files it creates.
Names
Name |
---|
Duqu |
Tilded |
Category
Malware
Type
- ICS malware
- Backdoor
- Keylogger
- Info stealer
- Wiper
Information
- https://en.wikipedia.org/wiki/Duqu
- http://www.symantec.com/content/en/us/enterprise/media/security_response/whitepapers/w32_duqu_the_precursor_to_the_next_stuxnet.pdf
- https://www.crysys.hu/publications/files/tedi/ukatemicrysys_territorialdispute.pdf
- https://securelist.com/blog/research/70504/the-mystery-of-duqu-2-0-a-sophisticated-cyberespionage-actor-returns
- https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2017/10/20114955/Bartholomew-GuerreroSaade-VB2016.pdf
Mitre Attack
Malpedia
Alienvault Otx
Other Information
Uuid
1cb8b2e7-9d26-414d-b574-87eaddeb0871
Last Card Change
2021-04-24