Remember The Threatened Cyber-Jihad? McAfee Has The Binary Code

November 12th, 2007 Posted By The Bashman.

Monkey Jihadi

Cyber Jihad Isn’t Here Yet
By Matthew Wollenweber at McAfee

There’s a lot of hype circulating around about a Jihad application meant to wage cyber war in the near future. A lot of people have speculated and while the experts are dismissive, the topic is still getting a lot of press and worrying average users. I took a bit of time to examine the binary and I don’t believe it poses a huge threat. Here are my reasons why:

The program is written in Visual Basic. While there’s nothing wrong with that, VB is not the preferred programming language of very many professionals. C\C++\C# would tend to be better choices for complicated and efficient programs. VB tends to be a language for quick applications or for those beginning programming.

There is a tracking website required to use the application. Terrrorists don’t like to be tracked. Further, the site tracks referrals – thus it would be trivial to create cliques of users, which again is something terrorists would be desperate to avoid.

The website variables are in English. Extremists/Islamic Jihadists tend to not speak English, remember all the stories about the few English speakers they use? These guys have some understanding of English – indicating they might not be the stereotypical terrorist.

The web url is hard coded and it’s to a real web server. We’re in an age of dynamic dns and fast flux. A static/real url is very amateur and easily blocked.
There didn’t appear to be capability to dynamically update the program remotely – this would be key for updates and avoiding being blocked. I did a VERY QUICK analysis, but didn’t see this capability.

The executable wasn’t encrypted and didn’t fight malware analysis – real malware writers love to do malicious things to AV guys. They weren’t in this executable.

The webserver had frontpage extentions – this again just seems out of place for cyber war.

All told, the little bits of analysis make the code look to be written by high school or early college kids. If their network gets large enough, maybe they could have caused harm. Right now the websever isn’t working and the app seems like a no-go. I’d suggest everyone block traffic to the server http://al-jinan.net and stop worrying.


    • Young Americans Documentary
    • Learn More About Pat
    • blogroll

      • A Soldier's Perspective
      • American Soldier
      • Ann Coulter
      • Attack Machine
      • Bill Ardolino
      • Bill Roggio
      • Black Five
      • Blonde Sagacity
      • Breitbart
      • Chicagoray
      • Confederate Yankee
      • Day by Day Cartoon
      • Euphoric Reality
      • Flopping Aces
      • Free Republic
      • Frontier Web Design
      • Hot Air
      • Hugh Hewitt
      • Ian Schwartz
      • Instapundit
      • Little Green Footballs
      • Matt Sanchez
      • Michael Fumento
      • Michael Yon
      • Michelle Malkin
      • Military.com
      • Missiles And Stilletos
      • Move America Forward
      • Mudville Gazette
      • Pass The Ammo
      • Roger L. Simon
      • Sportsman's Outfit
      • Stop The ACLU
      • TCOverride
      • The Belmont Club
      • The Big God Blog
      • The Crimson Blog
      • The Daily Gut
      • The Drudge Report
      • The PoliTicking Timebomb
      • The Pundit Review
      • Veteran's Affairs Documentary

4 Responses

  1. Dan (The Infidel)

    This is an old story. That program has been reverse-engineered ad nauseum. The pukes that wrote the program are a day late and a dollar short. We’re on to them…

  2. everydayjoe

    Great pic, Bash. P’shop some nipple rings on that beast and it could easily be mistaken for Pelosi in the buff, no?

    …democrats in the mist?

  3. Jack

    Nothing new. When the e-Jihad story appeared on this website back in July or August, I checked out the content of the executable and website. Their server was down and the program was clearly written in VB by an amateur. Their way of running a DDOS attack is way too primitive, traceable and detectable (by any half-decent IDS) to be effective. In other words, they’re a freaking joke.

  4. Augustine

    HAHAHAHAHAHAHAHA, a e-jihadist being smart enough to create a decent virus?
    HAHAHAHAHAHAHAHAHA, oh god, oh god, hahahahahaha, oh god.

Respond now.

alert Be respectful of others and their opinions. Inflammatory remarks and inane leftist drivel will be deleted. It ain’t about free speech, remember you’re in a private domain. My website, my prerogative.

alert If you can't handle using your real email address, don't bother posting a comment.

:mrgreen::neutral::twisted::arrow::shock::smile::???::cool::evil::grin::idea::oops::razz::roll::wink::cry::eek::lol::mad::sad::!::?::beer: