Malware With Mars Rover Code Used to Target India-Afghanistan Relations: Report

Advertisement
By Manish Singh | Updated: 4 March 2016 09:27 IST
Malware With Mars Rover Code Used to Target India-Afghanistan Relations: Report

A high profile Indian diplomat, the Ambassador to Afghanistan, was recently the target of a security attack. The malware was reportedly delivered via an email that was crafted and spoofed to look like it was sent by Manohar Parrikar, Defence Minister of India.

The attack was initiated on December 24, 2015, reports security firm Palo Alto Networks, which obtained a copy of the email. The imposter congratulated the Ambassador to Afghanistan for efficiently spearheading various development projects in the country.

The email came with an attachment entitled "Appreciation_letter.doc" which in turn had exploits for a specific vulnerability - CVE-2010-3333 affecting Microsoft Word. Palo Alto Networks reports that the exploit code was designed to download and execute a file from newsumbrella[dot]net website.

The exploit would download a number of files including Cxcore210.dll and Highgui210.dll files that are based on OpenCV modules. OpenCV, for those unfamiliar, is a library of functions built for real-time computer vision applications as well as machine learning. The technology has been used on a range of things, including Mars Rover.

Advertisement

"During the analysis, it was noticed that Rover's detection rate is extremely low. This is surprising as the malware lacked many modern malware features, yet it is successful in bypassing traditional security systems," Palo Alto Networks said in a press statement. "The low detection rate also enables the malware to fulfil the objectives of the attacker getting the information required."

Advertisement

The 'Rover' malware was designed to take screenshots of the victim's computer, a "heartbeat" signal that would check every five seconds whether the C2 server was running. The toolkit would also steal document files from the hard drive, and plant a keylogger which would listen to every command typed on the system.

Additionally, the 'Rover' malware was also designed to search files on USB drives and implant a backdoor which would take photos using the system webcam, record audio, and take screenshots.

Advertisement

In recent times, India and Afghanistan have come closer. India helped fund Afghanistan's economic development and construction of critical infrastructure, and among other things, a new parliament complex for the Afghan government.

Gadgets 360 has reached out to Palo Alto Networks for more details. The incident goes on to prove how sophisticated attackers have grown over the years.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Sony Announces Limited-Period Discount on Audio Products in India
  2. iPhone 17 Pro, iPhone 17 Pro Max Alleged Geekbench Listing Leaked
  3. Realme 15 Pro Tipped to Launch in India in These Colour Options
  4. Nothing Phone 3 to Be Manufactured in India, Company Reveals Model Number
  5. Poco F7 Spotted on Geekbench With Snapdragon 8s Gen 4, 12GB of RAM
  6. iQOO Z10 Lite 5G Battery Capacity Confirmed Ahead of India Launch
  7. Titan: The OceanGate Disaster Now Streaming on Netflix: What You Need to Know
  8. Apple Might Use AI Tags to Help Users Find Relevant Apps on App Store
  9. Hubble Finds Cosmic Dust Coating Uranus' Moons, Not Radiation Scars
  1. Hubble Finds Cosmic Dust Coating Uranus’ Moons, Not Radiation Scars
  2. New Theory Challenges Black Hole Singularities, But Critics Raise Red Flags
  3. Solar Orbiter Captures First-Ever Close-Up of Sun’s South Pole, Revealing Magnetic Field Chaos
  4. The Summer I Turned Pretty Season 3 OTT Release Date: When and Where to Watch Final Season Online?
  5. Mokshapatam Hindi OTT Release: Where to Watch it Online?
  6. Titan: The OceanGate Disaster Now Streaming on Netflix: What You Need to Know
  7. Stellar Blade Becomes Sony's Biggest Single-Player Steam Launch Ever a Day After PC Release
  8. Microsoft 365 Copilot Vulnerable to Zero-Click EchoLeak Exploit, Cybersecurity Researchers Say
  9. Samsung Rolls Out One UI 8 Beta 2 Update for Galaxy S25 Series in Select Countries
  10. Amazon Prime Video Now Shows Twice As Much Ads As Before: Report
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.