New Destructive Wiper “ZeroCleare” Targets Energy Sector in the Middle East
released on 2019-12-04 @ 01:27:49 PM
IBM® X-Force® has been researching and tracking destructive malware in the Middle East,
particularly in the industrial and energy sector. Since the first Shamoon attacks that started
affecting organizations in the region in summer of 2012, we have been following the evolution
of destructive, disk-wiping malware deployed to cause disruption.
In recent analysis, X-Force Incident Response and Intelligence Services (IRIS) discovered new
malware from the Wiper class, used in a destructive attack in the Middle East. We named this
malware “ZeroCleare” per the program database (PDB) pathname of its binary file