Flame malware controllers send uninstall command
Kaspersky Lab had announced the discovery of the sophisticated malware, that was called Flame and the ...

Kaspersky Lab had announced the discovery of the sophisticated malware, that was called Flame and the recent spate of Flame malware attacks have been grabbing headlines, across the world. It was said to have been actively used as a cyber weapon targeting entities across several countries. It all started off in the Middle-East and it was said to be spreading across the world. The malware was discovered by Kaspersky Lab’s experts during an investigation prompted by the International Telecommunication Union (ITU), and the analysis of the malicious program revealed it was the largest and most complex attack toolkit to date. Kaspersky Lab’s analysis of the malware revealed that it was currently being used for cyber espionage and that it would infect computers to steal data and sensitive information. The stolen data would then be sent to one of Flame’s command & control (C&C) servers.

Flame to go up in flames?
This module is said to have been made on the 9th of May, a few weeks after the malware was found to be spreading on the web. The module may have been tested even before the malware was released on the web.
Soon after the malware was discovered, Kaspersky Lab contacted CERTs in multiple countries to inform them about the Flame C&C domain information and IP addresses of the malicious servers. There were also some interesting notes that were released by Kaspersky Lab.
- During the past 4 years, servers hosting the Flame C&C infrastructure moved between multiple locations, including Hong Kong, Turkey, Germany, Poland, Malaysia, Latvia, the United Kingdom and Switzerland.
- The Flame C&C domains were registered with an impressive list of fake identities and with a variety of registrars, going back as far as 2008.
- Infected users were registered in multiple regions, including the Middle East, Europe, North America and Asia-Pacific.
- The Flame attackers seem to have a high interest in PDF, Office and AutoCad drawings.
- The data uploaded to the Flame C&C is encrypted using relatively simple algorithms. Stolen documents are compressed using open source Zlib and modified PPDM compression.
If the actions are successful, we should soon have reports on the web of the effect of the Flame malware subsiding in the days and weeks to come.
Our resident Hardware Ninja, Rossi, lives for speed - by uhh riding his bicycle. He's Tech2's utility man, dividing his time between cameras, software and intense bouts of Quake III. He's also a fan of all things obscure, case in point, Live for Speed (sic). Never heard of it? We rest our case. In his spare time he tries to teach our new joinees the tricks of the trade even though the blood sweat and tears, but give him a camera and all things forgotten.

Why AI notetakers are raising serious privacy and security concerns
China's low-cost AI models are changing the global AI race. Here's why Silicon Valley is worried
China's Kimi K3 challenges US AI leaders with frontier-level performance at lower cost
How did Instagram run ads promoting child abuse in India?
Why has India halted WhatsApp’s username feature before launch?
