Malware With Mars Rover Code Used to Target India-Afghanistan Relations: Report

Advertisement
By Manish Singh | Updated: 4 March 2016 09:27 IST

A high profile Indian diplomat, the Ambassador to Afghanistan, was recently the target of a security attack. The malware was reportedly delivered via an email that was crafted and spoofed to look like it was sent by Manohar Parrikar, Defence Minister of India.

The attack was initiated on December 24, 2015, reports security firm Palo Alto Networks, which obtained a copy of the email. The imposter congratulated the Ambassador to Afghanistan for efficiently spearheading various development projects in the country.

The email came with an attachment entitled "Appreciation_letter.doc" which in turn had exploits for a specific vulnerability - CVE-2010-3333 affecting Microsoft Word. Palo Alto Networks reports that the exploit code was designed to download and execute a file from newsumbrella[dot]net website.

Advertisement

The exploit would download a number of files including Cxcore210.dll and Highgui210.dll files that are based on OpenCV modules. OpenCV, for those unfamiliar, is a library of functions built for real-time computer vision applications as well as machine learning. The technology has been used on a range of things, including Mars Rover.

Advertisement

"During the analysis, it was noticed that Rover's detection rate is extremely low. This is surprising as the malware lacked many modern malware features, yet it is successful in bypassing traditional security systems," Palo Alto Networks said in a press statement. "The low detection rate also enables the malware to fulfil the objectives of the attacker getting the information required."

Advertisement

The 'Rover' malware was designed to take screenshots of the victim's computer, a "heartbeat" signal that would check every five seconds whether the C2 server was running. The toolkit would also steal document files from the hard drive, and plant a keylogger which would listen to every command typed on the system.

Additionally, the 'Rover' malware was also designed to search files on USB drives and implant a backdoor which would take photos using the system webcam, record audio, and take screenshots.

Advertisement

In recent times, India and Afghanistan have come closer. India helped fund Afghanistan's economic development and construction of critical infrastructure, and among other things, a new parliament complex for the Afghan government.

Gadgets 360 has reached out to Palo Alto Networks for more details. The incident goes on to prove how sophisticated attackers have grown over the years.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 70 Fusion Renders Leaked Again: See Design and Colourways
  2. Anaganaga Oka Raju Now Streaming on OTT: What You Need to Know
  3. Samsung Galaxy S26 Series Will Be Available via These E-Commerce Platforms
  4. Samsung Galaxy S26 Series Pricing, Specs Leak As Galaxy Unpacked Nears
  5. Nvidia GeForce Now for India Hands-On: Built to Impress
  6. Samsung Announces Galaxy S26 Series Launch Date as Pre-Reservations Begin
  7. Google Maps' New AI Feature Could Let You Chat About Places and Routes
  8. Realme Narzo 90x 5G Gets a New Colour Option Ahead of Valentine's Day
  1. Lumio Vision TVs to Receive Android 14 Update With Performance Improvements; Arc Projector to Follow
  2. Maruva Tarama OTT Release Date: When and Where to Watch it Online?
  3. Hackers Use ClickFix Scam to Target Crypto Executive via Fake Zoom Meetings
  4. Heated Rivalry OTT Release Date Revealed: Know When and Where to Watch it Online
  5. The Maadhar Streaming Now on OTTPlus: Know Everything About This Tamil Short Thriller Film
  6. Anaganaga Oka Raju Now Streaming on OTT: What You Need to Know About This Telugu Comedy Movie
  7. Instagram Said to Be Working On AI-Powered Face Swap Feature, Takes On OpenAI’s Sora
  8. Konami Announces Silent Hill Transmission Broadcast for This Week, Will Share Update on Silent Hill: Townfall
  9. Samsung Galaxy S26 Series, Galaxy Buds 4 Lineup to Be Available in India via Amazon, Flipkart
  10. Google Updates Search Tools to Simplify Removal of Non-Consensual Explicit Images
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.