View previous topic :: View next topic |
Author |
Message |
xMurtaghx I post too much
Reputation: 1
Joined: 13 Apr 2008 Posts: 3611 Location: Gayville, South Dakota, 57031, United States of America
|
Posted: Sun Mar 29, 2009 6:32 pm Post subject: COMPUTER VIRUS WARNING- WHAT EVERYONE MUST KNOW |
|
|
This is just some information I found about Conflicker C, a worm that is
set to infect millions of computer on April 1, 2009.
Quote: | In an event that hits the computer world only once every few years, security experts are racing against time to mitigate the impact of a bit of malware which is set to wreak havoc on a hard-coded date. As is often the case, that date is April 1.
Malware creators love to target April Fool's Day with their wares, and the latest worm, called Conficker C, could be one of the most damaging attacks we've seen in years.
Conficker first bubbled up in late 2008 and began making headlines in January as known infections topped 9 million computers. Now in its third variant, Conficker C, the worm has grown incredibly complicated, powerful, and virulent... though no one is quite sure exactly what it will do when D-Day arrives.
Thanks in part to a quarter-million-dollar bounty on the head of the writer of the worm, offered by Microsoft, security researchers are aggressively digging into the worm's code as they attempt to engineer a cure or find the writer before the deadline. What's known so far is that on April 1, all infected computers will come under the control of a master machine located somewhere across the web, at which point anything's possible. Will the zombie machines become denial of service attack pawns, steal personal information, wipe hard drives, or simply manifest more traditional malware pop-ups and extortion-like come-ons designed to sell you phony security software? No one knows.
Conficker is clever in the way it hides its tracks because it uses an enormous number of URLs to communicate with HQ. The first version of Conficker used just 250 addresses each day -- which security researchers and ICANN simply bought and/or disabled -- but Conficker C will up the ante to 50,000 addresses a day when it goes active, a number which simply can't be tracked and disabled by hand.
At this point, you should be extra vigilant about protecting your PC: Patch Windows completely through Windows Update and update your anti-malware software as well. Make sure your antivirus software is actually running too, as Conficker may have disabled it.
Microsoft also offers a free online safety scan here, which should be able to detect all Conficker versions. |
Sourced from Yahoo Tech
_________________
Scania- Lvl 117 DK✔
WE WILL MISS GMS!
 |
|
Back to top |
|
 |
DarkEnvy Grandmaster Cheater
Reputation: -1
Joined: 27 Jan 2008 Posts: 683 Location: Right here
|
Posted: Sun Mar 29, 2009 6:50 pm Post subject: |
|
|
only $250K ?! This hacker prob hit me already T_T
_________________
|
|
Back to top |
|
 |
Phixen I post too much
Reputation: 0
Joined: 27 Oct 2008 Posts: 4123
|
Posted: Sun Mar 29, 2009 6:51 pm Post subject: |
|
|
What can WE do to prevent our computers from getting infected by the virus?
Last edited by Phixen on Sun Mar 29, 2009 6:55 pm; edited 1 time in total |
|
Back to top |
|
 |
DarkEnvy Grandmaster Cheater
Reputation: -1
Joined: 27 Jan 2008 Posts: 683 Location: Right here
|
Posted: Sun Mar 29, 2009 6:53 pm Post subject: |
|
|
NO read the article. It said they are trying to make a cure for it.
_________________
|
|
Back to top |
|
 |
Phixen I post too much
Reputation: 0
Joined: 27 Oct 2008 Posts: 4123
|
Posted: Sun Mar 29, 2009 6:57 pm Post subject: |
|
|
DarkEnvy wrote: | NO read the article. It said they are trying to make a cure for it. |
I HAVE read the article. What if they failed to make a cure for it?
I'm a pessimistic person...-_-
|
|
Back to top |
|
 |
xMurtaghx I post too much
Reputation: 1
Joined: 13 Apr 2008 Posts: 3611 Location: Gayville, South Dakota, 57031, United States of America
|
Posted: Sun Mar 29, 2009 6:57 pm Post subject: |
|
|
Hack-imz wrote: | What can WE do to prevent our computers from getting infected by the virus? |
Scan your computer and delete anything saying Conficker C.
_________________
Scania- Lvl 117 DK✔
WE WILL MISS GMS!
 |
|
Back to top |
|
 |
Phixen I post too much
Reputation: 0
Joined: 27 Oct 2008 Posts: 4123
|
Posted: Sun Mar 29, 2009 6:59 pm Post subject: |
|
|
xMurtaghx wrote: | Hack-imz wrote: | What can WE do to prevent our computers from getting infected by the virus? |
Scan your computer and delete anything saying Conficker C. |
...
The one who made this virus wouldn't be stupid enough to let us know we have something in our computer named Conficker C, would he? o_o
|
|
Back to top |
|
 |
Dillonz Grandmaster Cheater
Reputation: 4
Joined: 20 Jan 2008 Posts: 758 Location: Under your bed
|
Posted: Sun Mar 29, 2009 7:35 pm Post subject: |
|
|
You wouldn't get infected if you kept your computer off would you? O_o
|
|
Back to top |
|
 |
kls85 I post too much
Reputation: 22
Joined: 18 Jul 2008 Posts: 2757 Location: Under ur bed
|
Posted: Sun Mar 29, 2009 7:43 pm Post subject: |
|
|
What's so unique about that virus is it mutates.
http://www.dailytech.com/Ten+Million+Infections+Strong+Conficker+Worm+Prepares+for+April+1+Update/article14679.htm
DT wrote: | The worm that won't go away will get an upgrade on April 1
The Conficker worm has been wreaking havoc on internet users ever since it climbed out of its slimy hole in the internet's dark nether-regions back in 2008. Now the worm is about to get even more dangerous when it receives its latest refresh in a series of periodic updates on April 1. Security officials are bracing for the impact that the upgrade might have.
Either diabolical or brilliant, it's the Conficker worm's unique design that allowed it infect over 8 million business computers last year and scores of other individual users. The worm, like many viruses, is regularly evolving thanks to periodic downloads. However, the techniques it uses to do so are rather unique -- it cleverly creates thousands of false domains daily to throw off investigators. On the update day, it selects 500 correct domains out of the 50,000 candidates to download malware and updates from.
Pierre-Marc Bureau, a researcher at Eset says that this has helped the virus evolve from an initial novice-seeming threat targeting a flaw in Windows services into a large scale menace. States Mr. Bureau, "From a high-level perspective, the 'A' variant gave the impression [of being] a 'test run'. It had code that probably was not meant to be spread globally. For example, it was checking for the presence of an Ukrainian keyboard or Ukrainian IP before infecting a system."
The first run also contained a false lead -- it tried to download and execute a file called loadav.exe. This led security research to believe it was just one of a pack of malware programs trying to peddle fake antivirus software. It turned out to be a red herring -- the file was never uploaded and the next generation did away with the feature.
In the second version, the worm continued to spread through Windows Services on unpatched machines. However, the update also granted it the power to spread over network shares by trying to log in autonomously into network machines with weak passwords. It also gained the ability to load itself onto USB sticks connected to infected machines, gaining another means of transmission. The scanning speed for machines to infect was greatly optimized -- in short the worm had become a real big problem.
Finally, the worm got its third update, becoming the Downadup virus as it’s now known. The latest version added peer-to-peer communication between infected systems. It also added new domain-generation algorithms to help it disguise where it was receiving its updates from.
At this point the worm is already a full scale threat, and there's no telling what might happen with the next update. Describes Mr. Bureau, "During the last week, 3.88 percent of our users have been attacked by Conficker, either because they accessed an infected device or by a network attack. The percentage is very high and shows that a high number of computers are presently infected and that the worm is still spreading."
Estimates of the number infected machines vary greatly, but most experts agree that over 10 million computers, largely in the business sector were compromised last year. The number is large enough that Microsoft, which already has offered a bounty for the worm's writers, and AOL are teaming up to trying to weed out the domains it uses. However, they face an uphill battle due to the vast number of domains the worm generates. And law enforcement and security experts are no closer to having any clue what individual or individuals are writing the Conficker code.
Meanwhile the Conficker continues to spread and get smarter. Its actions leave little doubt in the security community -- it's creating an army of infected machines, one that could do serious damage if unleashed.
Adriel Desautels, CTO of Netragard states, "I don't think that the threat comes from the worm itself, it comes from the people that are in control of the mass of Conficker-infected systems. Those people have an immensely powerful weapon at their disposal, and that weapon threatens all of us."
April 1 will see the attacks taken to the next level -- and it’s anyone's guess what capabilities it might gain. |
|
|
Back to top |
|
 |
Phixen I post too much
Reputation: 0
Joined: 27 Oct 2008 Posts: 4123
|
Posted: Sun Mar 29, 2009 8:01 pm Post subject: |
|
|
Teknological wrote: | You wouldn't get infected if you kept your computer off would you? O_o |
The problem is: my brother is too stupid to NOT get out of the computer...he doesn't even know how to use an AV, also, he doesn't know about the virus...he usually uses the computer from when I go to sleep (somewhere 9-10:00PM) until 4:00 am or earlier...-_-
|
|
Back to top |
|
 |
undeadkillers Expert Cheater
Reputation: 0
Joined: 03 Oct 2006 Posts: 217 Location: Canada,What esle?
|
Posted: Sun Mar 29, 2009 8:46 pm Post subject: |
|
|
Fuck this, time to download some pr0n and games and closed my internet connections.
|
|
Back to top |
|
 |
Salt Grandmaster Cheater
Reputation: -1
Joined: 26 Sep 2007 Posts: 550
|
Posted: Sun Mar 29, 2009 10:02 pm Post subject: |
|
|
Lol'd Your all acting like this is Armageddon, Do you guys not recall Y2K?
Shit didnt happen, and this wont. Stop putting ur panties in a bunch.
_________________
|
|
Back to top |
|
 |
Localhost I post too much
Reputation: 0
Joined: 28 Apr 2007 Posts: 3402
|
Posted: Sun Mar 29, 2009 10:04 pm Post subject: |
|
|
Salt wrote: | Lol'd Your all acting like this is Armageddon, Do you guys not recall Y2K?
Shit didnt happen, and this wont. Stop putting ur panties in a bunch. |
You were probably 2 during Y2k... and this isn't anything like this....
There is a fucking cure for Conficker C... It's a fucking patch no one has, since if you are infected, Conficker C blocks auto-updates.
_________________
|
|
Back to top |
|
 |
deathmatron Master Cheater
Reputation: 0
Joined: 07 Dec 2007 Posts: 301 Location: Unknown.
|
Posted: Sun Mar 29, 2009 10:55 pm Post subject: |
|
|
I have a feeling that if this passes, and bum rapes everyone's computers. Then mac sales will be going through the roof in the next couple months, if this bug doesn't target mac.
|
|
Back to top |
|
 |
NothingToShow Grandmaster Cheater Supreme
Reputation: 0
Joined: 11 Jul 2007 Posts: 1579
|
Posted: Sun Mar 29, 2009 10:57 pm Post subject: |
|
|
This is one of the reasons I love Linux.
|
|
Back to top |
|
 |
|