• IP addresses are NOT logged in this forum so there's no point asking. Please note that this forum is full of homophobes, racists, lunatics, schizophrenics & absolute nut jobs with a smattering of geniuses, Chinese chauvinists, Moderate Muslims and last but not least a couple of "know-it-alls" constantly sprouting their dubious wisdom. If you believe that content generated by unsavory characters might cause you offense PLEASE LEAVE NOW! Sammyboy Admin and Staff are not responsible for your hurt feelings should you choose to read any of the content here.

    The OTHER forum is HERE so please stop asking.

Dumb MS Windows Bug Exploited by Duqu Virus Plague users PCs everywhere AGAIN!

uncleyap

Alfrescian
Loyal
http://mashable.com/2011/11/02/duqu-microsoft/

Duqu Virus Tied to Microsoft Windows Bug
Stan Schroeder November 2, 2011 by Stan Schroeder 21
Share on Tumblr
email
share

Hackers have used a security flaw in Microsoft’s Windows operating system to infect computers with the the Duqu virus, Microsoft admits.

“We are working diligently to address this issue and will release a security update for customers,” Microsoft said in a statement.

The Duqu virus, which was discovered in October by Symantec, is thought by some experts to be the next big cyber security threat. It shares some of the code with Stuxnet, a malicious worm which targeted Iran’s nuclear program, but Duqu is specifically created for gathering intelligence data from agencies and corporations.

Microsoft’s statement did not include any additional details, but Symantec discovered that Duqu was initially infecting systems through a compromised Microsoft Word document which installs the malicious software after it’s opened.

Duqu infections have currently been confirmed in several countries, including France, Netherlands, Switzerland, India, Iran, Ukraine, Sudan and Vietnam.


Full coverage
Duqu Virus Spreads to Belgium
Mobiledia - ‎Nov 3, 2011‎
Given Duqu's sophistication, it may take much tougher measures to root it out of computers in Belgium, India, France, and a host of other nations that are rapidly becoming infected. Duqu Virus Spreads to Belgium.
Microsoft software bug linked to "Duqu" virus
Reuters - ‎Nov 1, 2011‎
(Reuters) - Microsoft Corp said hackers exploited a previously unknown bug in its Windows operating system to infect computers with the Duqu virus, which some security experts say could be the next big cyber threat. "We are working diligently to ...
Stuxnet-like virus hides in Microsoft Word files
AFP - ‎Nov 3, 2011‎
SAN FRANCISCO — Microsoft said Thursday it is working to fix a Windows software vulnerability that lets a Stuxnet-like Duqu virus sneak into computers by hiding in Word document files. Duqu infections have been reported in a dozen countries including ...
'Duqu virus' infecting Windows computers worldwide
Financial Post - ‎Nov 2, 2011‎
Hackers are spreading the Duqu virus by sending what appear to be simple Microsoft Word documents, but which actually contain malware, Symantec said in a blog post on Tuesday. If a recipient opened the Word document and infected the PC, the attacker ...
Duqu computer virus “sexy” and mysterious
Toronto Star - ‎Nov 3, 2011‎
As experts learn more about the Duqu computer virus it becomes increasingly clear that the latest high-profile cyber bug poses no direct threat to most people. But with it's complex design and mysterious origins, Duqu is still captivating many. ...
Duqu Virus Spreads Through Microsoft Word
Mobiledia - ‎Nov 2, 2011‎
The Duqu virus is targeting companies via a Windows OS security flaw, heightening the importance of corporate security to combat increasingly powerful malware. Duqu, cousin to the Stuxnet worm that ...
Duqu virus causes Microsoft software bug
News Box - ‎Nov 2, 2011‎
Security experts have analyzed the unknown bug that recently affected its Windows operating system and they have reached the conclusion that the Duqu virus, as they call it, is responsible for causing the Microsoft software bug, Reuters communicated on ...
Duqu hackers shift to Belgium after India raid
Reuters - ‎Nov 3, 2011‎
(Reuters) - Hackers used a server in Belgium to collect data stolen from machines infected with the Duqu computer virus, after authorities shut down another rogue collection system in India, according to security experts. ...
Duqu hackers move to Belgium after India raid
Times of India - ‎Nov 3, 2011‎
Hackers used a server in Belgium to collect data stolen from machines infected with the Duqu computer virus. LONDON: Hackers used a server in Belgium to collect data stolen from machines infected with the Duqu computer virus, after authorities shut ...
Zero-day Windows bug blamed for Duqu virus infections
TechSpot - ‎Nov 2, 2011‎
Microsoft is on the hot seat over a previously unknown bug in its Windows operating system that's being exploited to infect computers with the Duqu virus, piped by some experts to be the next big cyber threat. The Duqu virus was ...
Researchers: MS Word Flaw Enables Duqu Virus; No Fix
Infopackets - ‎Nov 3, 2011‎
As reported last week, Duqu's programming code is very close to that of the Stuxnet worm that wreaked havoc back in 2010. Stuxnet was a particularly sophisticated virus which infected Windows-based PCs, and in turn, attacked computers that controlled ...
Duqu Virus Blamed for Microsoft Windows Operating System Infection
ThirdAge - ‎Nov 2, 2011‎
The Duqu virus was used by hackers to exploit a previously unknown bug in Microsoft's Windows operating system and infect computers with the virus, which some security experts say could be the next big cyber threat, Microsoft Corp. said, according to ...
Microsoft Word Documents Could Spread Duqu Virus
MyFox Houston - ‎Nov 2, 2011‎
The real problem here is security analysts aren't sure how far reaching it is, and most virus scanners won't even detect it. All you can do is keep your software up-to-date and stay informed. Duqu virus message from Microsoft | Source : twitter . ...
Duqu Virus exploits new Microsoft Windows vulnerability
The People Speak Out - ‎Nov 2, 2011‎
A security bug known as Duqu in the Windows operating system has been used to infect computers with viruses and is considered by some experts as the next big computer threat. Microsoft has already announced an update to fix the bug. ...
Duqu Virus Tied to Microsoft Windows Bug
Mashable - ‎Nov 2, 2011‎
Hackers have used a security flaw in Microsoft's Windows operating system to infect computers with the the Duqu virus, Microsoft admits. “We are working diligently to address this issue and will release a security update for customers,” Microsoft said ...
Microsoft Announces Concern About Duqu Virus
Tech Gadgets Web (blog) - ‎Nov 2, 2011‎
News of the new Duqu virus was out in October when security software manufacturer Symantec Corp announced that they had found a dangerous computer virus which contains the code similar to Stuxnet. Incidentally, this particular virus seemed to have ...
Duqu infections are blamed on Microsoft Windows
Inquirer - ‎Nov 2, 2011‎
SOFTWARE FIRM Microsoft has been blamed for letting the Duqu virus loose upon the world. The Duqu virus was discovered earlier this month but until now no one knew how it was infecting machines. According to a report by security firm ...
Researchers discover zero-day Windows exploit in Duqu virus
Ars Technica - ‎Nov 2, 2011‎
The researchers at the Laboratory of Cryptography and System Security at Budapest University of Technology and Economics (CrySyS), who were the first to discover the Duqu virus, have reported the vulnerability to Microsoft and other organizations, ...
Hackers exploit Microsoft Windows OS with Duqu virus
Computer Business Review - ‎Nov 2, 2011‎
Microsoft said its Windows operating system was exploited by hackers to infect computers with the Duqu virus that appears to exploit at least one Windows kernel zero day vulnerability. Microsoft said in statement that they are working diligently to ...
Belgium data center shuts down Duqu server
DatacenterDynamics - ‎19 hours ago‎
Duqu is similar in nature to Stuxnet and has even been called 'Son of Stuxnet', the parent virus being thought by security analysts to be concocted to targeted critical utilities, including nuclear facilitiies running industrial software. ...
Duqu hackers shift operational base to Belgium
Computer Business Review - ‎21 hours ago‎
It is seen as the the next big cyber threat after the Stuxnet virus that was believed to have infected Iran's nuclear program. It was two ago that news of Duqu virus first surfaced after researchers at Hungary's Laboratory of Cryptography and System ...
Microsoft bug allows Duqu virus in
ITP.net - ‎Nov 2, 2011‎
Microsoft has revealed that the Duqu virus exploits a previously undetected flaw in its systems to infect computers. (Getty Images) By Georgina Enzer Published November 2, 2011 Microsoft has revealed that hackers used a previously undetected bug in its ...
Duqu exploits Windows flaw for attacks
TechEye - ‎Nov 2, 2011‎
The spread of the Duqu virus was aided by previously unknown vulnerabilities in Microsoft Word, a security team has discovered. Security firm Symantec announced that Duqu, thought by some to be created by those responsible for the Stuxnet virus, ...
No quick patch will kill Duqu, or answer question of whether its spycraft or ...
ITworld.com - ‎Nov 2, 2011‎
Duqu shares a lot of code with Stuxnet and shares Stuxnet's flair for elegant, creative ways to exploit a weakness or find a way around it. It also shows the same effort to keep the virus covert for as long as possible while it does its work, ...
Duqu exploited Windows kernel vulnerability
TG Daily - ‎Nov 2, 2011‎
The Duqu virus which was recently discovered to have been hitting industrial systems in the same manner as Stuxnet did so by exploiting a Windows kernel zero day vulnerability, it has emerged. Researchers from the CrySyS laboratory in Hungary say the ...
What Is Duqu Up To?
InformationWeek - ‎Nov 3, 2011‎
As researchers debate a Duqu-Stuxnet connection and study a new zero-day Duqu exploit, still no word on the actual targets or its mission. By Kelly Jackson Higgins, Dark Reading Even as new clues have been uncovered about Duqu over the past few ...
Dugu hackers move to Belgium
TechEye - ‎Nov 4, 2011‎
Hackers have started using a server in Belgium to collect data stolen from machines infected with the Duqu computer virus, after security experts shut down its operations in India. Duqu has governments and security experts in a panic because it could ...
Microsoft software bug has link to Duqu virus
Ubergizmo - ‎Nov 1, 2011‎
I don't know about you, but when I heard of the name “Duqu virus”, the first thing that came to my mind was that of Count Dooku – could a Star Wars fan be behind the Duqu virus that exploited a previously unknown bug in the Windows operating system? ...
Duqu Hackers Target Belgium: Using Server To Collect Stolen Data
ThirdAge - ‎Nov 3, 2011‎
Duqu hackers are now targeting Belgium, using a server in the country to collect data stolen from machines infected with the Duqu computer virus. It is the latest development after authorities shut down another suspect data collection system in India, ...
Duqu Worm: Precursor to a More Devastating Attack?
Technorati - ‎Nov 2, 2011‎
The Duqu virus is designed to gather data about industrial control-systems. These systems are what directs and controls the mechanical systems of a facility such as a factory. Stuxnet infected five Iranian organizations suspected to be uranium ...
 

uncleyap

Alfrescian
Loyal
This one is POWERFUL, because it can steal your data and secret and control your computer even when you are disconnected from Internet. It knows how to create / find it's own way to connect to Internet.



http://arstechnica.com/business/new...er-zero-day-windows-exploit-in-duqu-virus.ars

Researchers discover zero-day Windows exploit in Duqu virus
By Sean Gallagher | Published November 2, 2011 10:13 AM

Hungarian researchers have discovered a previously unknown Windows kernel vulnerability that is used by the installer for Duqu, the Stuxnet-like Trojan first detected in October. The researchers at the Laboratory of Cryptography and System Security at Budapest University of Technology and Economics (CrySyS), who were the first to discover the Duqu virus, have reported the vulnerability to Microsoft and other organizations, and a patch is in development.

According to a Symantec analysis of the exploit, Duqu’s installer was delivered to target systems embedded in a seemingly legitimate Microsoft Word document. When the document is opened, the installer embedded in the document is activated, and executes Windows shell code to install the malware’s .DLL and driver file to the system by hijacking Windows’ services control manager.

The shell code discovered in the Duqu worm by CrySyS was written to only allow installation of the virus during an eight-day period in August. Once the virus is installed, it can spread to other computers over networked file shares, and connect back to a command-and-control network over the Internet. Researchers found that when the virus infects systems not directly connected to the Internet, it uses a file-sharing protocol to connect with computers that have Internet access to form a relay back to the command and control network.

So far, confirmed Duqu infections have been reported in France, the Netherlands, Switzerland, the UK, Ukraine, Austria, Hungary, Iran, Sudan, Vietnam and Indonesia. The virus communicated with servers in Belgium, which have been shut down. But it’s unknown if the virus has since been modified and used for other attacks.
 
Top