Malware With Mars Rover Code Used to Target India-Afghanistan Relations: Report

Advertisement
By Manish Singh | Updated: 4 March 2016 09:27 IST

A high profile Indian diplomat, the Ambassador to Afghanistan, was recently the target of a security attack. The malware was reportedly delivered via an email that was crafted and spoofed to look like it was sent by Manohar Parrikar, Defence Minister of India.

The attack was initiated on December 24, 2015, reports security firm Palo Alto Networks, which obtained a copy of the email. The imposter congratulated the Ambassador to Afghanistan for efficiently spearheading various development projects in the country.

The email came with an attachment entitled "Appreciation_letter.doc" which in turn had exploits for a specific vulnerability - CVE-2010-3333 affecting Microsoft Word. Palo Alto Networks reports that the exploit code was designed to download and execute a file from newsumbrella[dot]net website.

Advertisement

The exploit would download a number of files including Cxcore210.dll and Highgui210.dll files that are based on OpenCV modules. OpenCV, for those unfamiliar, is a library of functions built for real-time computer vision applications as well as machine learning. The technology has been used on a range of things, including Mars Rover.

Advertisement

"During the analysis, it was noticed that Rover's detection rate is extremely low. This is surprising as the malware lacked many modern malware features, yet it is successful in bypassing traditional security systems," Palo Alto Networks said in a press statement. "The low detection rate also enables the malware to fulfil the objectives of the attacker getting the information required."

Advertisement

The 'Rover' malware was designed to take screenshots of the victim's computer, a "heartbeat" signal that would check every five seconds whether the C2 server was running. The toolkit would also steal document files from the hard drive, and plant a keylogger which would listen to every command typed on the system.

Additionally, the 'Rover' malware was also designed to search files on USB drives and implant a backdoor which would take photos using the system webcam, record audio, and take screenshots.

Advertisement

In recent times, India and Afghanistan have come closer. India helped fund Afghanistan's economic development and construction of critical infrastructure, and among other things, a new parliament complex for the Afghan government.

Gadgets 360 has reached out to Palo Alto Networks for more details. The incident goes on to prove how sophisticated attackers have grown over the years.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo X300, Vivo X300 Pro Go on Sale in India: Price, Offers, Features
  2. Vivo V70, Vivo T5x 5G Listed Certification Site Ahead of India Launch
  3. Samsung Could Launch Three Galaxy A-Series Models Early Next Year
  4. Realme 16 Pro Series Confirmed to Launch in India Soon
  5. Samsung Galaxy S26 Could Miss Camera Upgrades to Keep Prices in Check
  6. Google Photos Rolls Out Several New Features for Android and iOS
  7. Xiaomi 17 Listing on Thailand's NBTC Site Hints at Imminent Global Launch
  1. Assassin's Creed Mirage, Wo Long: Fallen Dynasty Reportedly Coming to PS Plus Game Catalogue in December
  2. Samsung Galaxy S26 to Miss Camera Upgrades as Company Focuses on Price Control: Report
  3. Realme Narzo 90 Series Display, Battery Specifications Confirmed Ahead of December 16 Launch in India
  4. Google Is Reportedly Testing AI Mode Integration Within Chrome Browser
  5. Instagram’s Edits App Updated With New Templates, Lock Screen Widgets and More
  6. Oppo Reno 15C Key Specifications, Launch Date Revealed via Certification Listing: Report
  7. Google Faces EU Antitrust Investigation Over AI Overviews, YouTube
  8. My Hero Academia Vigilantes Season 2 OTT Release Date: When and Where to Watch it Online?
  9. Can This Love Be Translated is Coming Soon on Netflix: What You Need to Know
  10. Theeyavar Kulai Nadunga OTT Release Date: When and Where to Watch it Online?
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.