05 April 2009

Virus Conficker

Conficker worm plays no tricks on April Fools' Day

SAN FRANCISCO (AFP) - The Conficker worm's April 1st trigger date came and went without the bedeviling computer virus causing any mischief but security specialists warn that the threat is far from over.

Conficker did just what the "white hats" tracking it expected -- the virus evolved to better resist extermination and make its masters tougher to find.

"There are still millions of personal computers out there that are, unknown to their owners, at risk of being controlled in the future by persons unknown," said Trend Micro threat researcher Paul Ferguson.

"The threat is still there. These guys are smart; they are not going to pull any obvious strings when there are so many eyeballs on the problem."

A task force assembled by Microsoft has been working to stamp out the worm, referred to as Conficker or DownAdUp, and the US software colossus has placed a bounty of 250,000 dollars on the heads of those responsible for the threat.

"It is pretty sophisticated and state-of-the-art," Ferguson said. "It definitely looks like the puppet masters are located in Eastern Europe."

The worm was programmed to evolve on Wednesday to become harder to stop. It began doing just that when infected machines got cues, some from websites with Greenwich Mean Time and others based on local clocks.

The malicious software evolved from East to West, beginning in the first time zones to greet April Fools' Day.

Conficker had been programmed to reach out to 250 websites daily to download commands from its masters, but on Wednesday it began generating daily lists of 50,000 websites and reaching randomly 500 of those.

The hackers behind the worm have yet to give the virus any specific orders. An estimated one to two million computers worldwide are infected with Conficker.

The worm, a self-replicating program, takes advantage of networks or computers that haven't kept up to date with security patches for Windows RPC Server Service.

It can infect machines from the Internet or by hiding on USB memory sticks carrying data from one computer to another.

Malware could be triggered to steal data or turn control of infected computers over to hackers amassing "zombie" machines into "botnet" armies.

"We're still watching to see what it's doing," said Ferguson, a member of the Conficker task force.

"A lot of us have our fingers crossed that people are getting rid of this."

Microsoft has modified its free Malicious Software Removal Tool to detect and remove Conficker. Security firms, including Trend Micro, Symantec and F-Secure, provide Conficker removal services at their websites.

The tell-tale signs that a computer is infected includes the worm blocking efforts to connect with websites of security firms providing online tools for removing the virus.

Conficker task force members have found a way to disable the block by typing in a few commands into computers.

The US Department of Homeland Security (DHS) released a tool on Monday to detect whether a computer is infected by Conficker.

The agency said the worm detector was developed by the US Computer Emergency Readiness Team (US-CERT).

"Our experts at US-CERT are working around the clock to increase our capabilities to address the cyber risk to our nation's critical networks and systems, both from this threat and all others," US-CERT director Mischel Kwon said when the tool was released.

US-CERT recommended that Windows users apply Microsoft security patch MS08-067 to help protect against the worm.

"Life goes on," Ferguson said as the sun set on April Fools' Day in California. "This system could still go off. Time will tell."

While Conficker has been in the spotlight, computer security specialists are finding 10,000 new samples of malicious software daily and hundreds of websites are spewing spam, some of it tainted with viruses, according to Ferguson.

"There are plenty of threats out there," he said.

from yahoo.com

tolong terjemahin dong


21 komentar:

  1. bahasa planet manakah ini sohib.... ai don-ai don-ai don-ai-don....
    mau comment tapi kagak ngerti, angguk-angguk kebingungan... jiakakakak....

    BalasHapus
  2. lah yang kayak mas Indra aja bingung apalagi saya ya??
    bingung banget mode on

    BalasHapus
  3. droppin here in early sunday morning,have a nice weekend friend...cee..yaa

    BalasHapus
  4. yes yes.... kenapa ya yang buat virus itu selalu lebih maju dibanding pembua anti virus sendiri...

    BalasHapus
  5. komputer tanpa virus bukan komputer namanya kale!

    BalasHapus
  6. Conficker telah menghancurkan system di komputerku
    selama hampir 2 minggu aku hidup dalam ke eroran
    terpaksa harus instal ulang windows
    buat patch baru..

    hati-hati aja sama virus ini
    dia gak merusak file
    tapi di memultiple apa yang kita buka menjadi seperti download
    memakan bandwith
    sampai membuat koneksi lelet banget

    BalasHapus
  7. Baca2 komentar sebelumnya, bikin komentar yang mirip2....hwa..ha...ha....

    * nyuri jurus sobat yang hobi berenang disungai...he..he..

    OOm..aye kagak gape bahasa bule....
    mo komen apa ya...??

    "NICE POSTING" (langsung ngeloyor pergi, takut ditanya artinya apa.....)

    BalasHapus
  8. buset dah, aku ga mudeng kalo pake basa gini (ketahuan kalo ujian nilainya selalu 5). tapi intinya virus kan (taunya cuma itu tok)
    ada lagi virus yang berbahaya bagi kompie yakni virus SJ (sendal jepit) wkakakaka

    BalasHapus
  9. waduh,,kasian juga yang dapet conficker, kyk kompinya si itik bali
    hehehehehe

    BalasHapus
  10. Conficker merupakan Virus Jaringan...Cara Penangulangannya dengan Mencabut semua Hardware yang berhubungan dengan Jaringan (Modem,Land Card) Baru di SCAN dengan menggunakan PCMAV..
    jIKA "GAGAL" Format aja Windowsnya..hehe..

    Thanx 4 Share...^_^

    BalasHapus
  11. kqkqkqkqkqkqkq ada ada aja nih :)

    BalasHapus
  12. o iy yg kemaren lom di jawap :(
    itu buat tandatangan di bawah tiap postingan gmn caranya? font nya apa?

    BalasHapus
  13. Wa... udah tulisannya tentang virus pake bahasa virus pula, pusing...

    BalasHapus
  14. aku juga ga ngerti
    asal mosting aja kok

    huahahahahaha

    kaburrrrrr

    BalasHapus
  15. untung udah kafir dari mikrosoft saya...jyakaka

    BalasHapus
  16. wkwkwkwkwk
    gunakan google translatee...
    kwkwkw

    BalasHapus
  17. No... COPASSS PLEEAASEEE hueheuheuehueheu

    BalasHapus

Copyright © 2013 attayaya: Virus Conficker | Blogger Template for Bertuah | Design by Ais Bertuah