logo

In Iran, New Data Wiping Malware on the Loose

ID: 72bf65eb-e776-534c-b2f7-f17f63488d81

STIX ID: report--72bf65eb-e776-534c-b2f7-f17f63488d81

Feed Name: Security Ledger

Threat Score
35/100

Date Published: 2012-12-17

Date Updated: 2026-05-08

Author: Paul Roberts

...
...

IR-CERT has warned of a recently identified destructive malware (Batchwiper) in Iran that wipes files, disk partitions, and user profiles on infected systems. Security vendors including AlienVault and Symantec analyzed the sample and described it as simple and not widespread, with no evident links to high-profile APTs; potential delivery methods include USB devices or spear-phishing. While damaging to affected systems, current reports indicate limited scope and low sophistication.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.