Giant Internet worm set to change tactics April 1 (AP)
www.Left4DeadForums.com
Go Back   Left 4 Dead Forums > The Safehouse > Off Topic


Giant Internet worm set to change tactics April 1 (AP)


Off Topic: General off topic discussion forum.

Reply
 
LinkBack Thread Tools Display Modes
Old March 29th, 2009, 11:36 AM   #1
WW_BITEME!! is Zombie fodder
 
WW_BITEME!!'s Avatar
 
Devious Tyrant
 
Join Date: Oct 2006
Location: NH, USA
Posts: 1,433
WW_BITEME!! is a corpse
Send a message via AIM to WW_BITEME!! Send a message via MSN to WW_BITEME!! Send a message via Yahoo to WW_BITEME!! Send a message via Skype™ to WW_BITEME!!
Giant Internet worm set to change tactics April 1 (AP)

Giant Internet worm set to change tactics April 1 (AP)

* Posted on Fri Mar 27, 2009 4:52PM EDT


SAN FRANCISCO - The fast-moving Conficker computer worm, a scourge of the Internet that has infected at least 3 million PCs, is set to spring to life in a new way on Wednesday — April Fools' Day.

That's when many of the poisoned machines will get more aggressive about "phoning home" to the worm's creators over the Internet. When that happens, the bad guys behind the worm will be able to trigger the program to send spam, spread more infections, clog networks with traffic, or try and bring down Web sites.

Technically, this could cause havoc, from massive network outages to the creation of a cyberweapon of mass destruction that attacks government computers. But researchers who have been tracking Conficker say the date will probably come and go quietly.

More likely, these researchers say, the programming change that goes into effect April 1 is partly symbolic — an April Fools' Day tweaking of Conficker's pursuers, who for now have been able to prevent the worm from doing significant damage.

"I don't think there will be a cataclysmic network event," said Richard Wang, manager of the U.S. research division of security firm Sophos PLC. "It doesn't make sense for the guys behind Conficker to cause a major network problem, because if they're breaking parts of the Internet they can't make any money."

Previous Internet threats were designed to cause haphazard destruction. In 2003 a worm known as Slammer saturated the Internet's data pipelines with so much traffic it crippled corporate and government systems, including ATM networks and 911 centers.

Far more often now, Internet threats are designed to ring up profits. Control of infected PCs is valuable on the black market, since the machines can be rented out, from one group of bad guys to another, and act as a kind of illicit supercomputer, sending spam, scanning Web sites for security holes, or participating in network attacks.

The army of Conficker-infected machines, known as a "botnet," could be one of the greatest cybercrime tools ever assembled. Conficker's authors just need to figure out a way to reliably communicate with it.

Infected PCs need commands to come alive. They get those commands by connecting to Web sites controlled by the bad guys. Even legitimate sites can be co-opted for this purpose, if hackers break in and use the sites' servers to send out malicious commands.

So far, Conficker-infected machines have been trying to connect each day to 250 Internet domains — the spots on the Internet where Web sites are parked. The bad guys need to get just one of those sites under their control to send their commands to the botnet. (The name Conficker comes from rearranging letters in the name of one of the original sites the worm was connecting to.)

Conficker has been a victim of its success, however, because its rapid spread across the Internet drew the notice of computer security companies. They have been able to work with domain name registrars, which administer Web site addresses, to block the botnet from dialing in.

Now those efforts will get much harder. On April 1, many Conficker-infected machines will generate a list of 50,000 new domains a day that they could try. Of that group, the botnet will randomly select 500 for the machines to actually query.

The bad guys still need to get only one of those up and running to connect to their botnet. And the bigger list of possibilities increases the odds they'll slip something by the security community.

Researchers already know which domains the infected machines will check, but pre-emptively registering them all, or persuading the registrars to neutralize all of them, is a bigger hurdle.

"We expect something will happen, but we don't quite know what it will look like," said Jose Nazario, manager of security research for Arbor Networks, a member of the "Conficker Cabal," an alliance trying to hunt down the worm's authors.

"With every move that they make, there's the potential to identify who they are, where they're located and what we can do about them," he added. "The real challenge right now is doing all that work around the world. That's not a technical challenge, but it is a logistical challenge."

Conficker's authors also have updated the worm so infected machines have new ways to talk to each other. They can share malicious commands rather than having to contact a hacked Web site for instructions.

That variation is important because it shows that even as security researchers have neutralized much of what the botnet might do, the worm's authors "didn't lose control of their botnet," said Michael La Pilla, manager of the malicious code operations team at VeriSign Inc.'s iDefense division.

The Conficker outbreak illustrates the importance of keeping current with Internet security updates. Conficker moves from PC to PC by exploiting a vulnerability in Windows that Microsoft Corp. fixed in October. But many people haven't applied the patch or are running pirated copies of Windows that don't get the updates.

Unlike other Internet threats that trick people into downloading a malicious program, Conficker is so good at spreading because it finds vulnerable PCs on its own and doesn't need human involvement to infect a machine.

Once inside, it does nasty things. The worm tries to crack administrators' passwords, disables security software, blocks access to antivirus vendors' Web sites to prevent updating, and opens the machines to further infections by Conficker's authors.

Someone whose machine is infected might have to reinstall the operating system.
Yahoo! News - Giant Internet worm set to change tactics April 1 by AP: Yahoo! Tech

BEST WildWest Game Ever...and its FREE!!!
Get the game here... WildWest Files Here
WW_BITEME!! is offline   Reply With Quote
Old March 29th, 2009, 01:20 PM   #2
Reginald Assblaine is ( . Y . )
 
Reginald Assblaine's Avatar
 
Freemium Member
 
Join Date: Feb 2008
Location: Wales
Posts: 1,506
Reginald Assblaine hid in the cupboardReginald Assblaine hid in the cupboard
Send a message via MSN to Reginald Assblaine
Originally Posted by WW_BITEME!! View Post
"I don't think there will be a cataclysmic network event," said Richard Wang,
EPIC Name.

[EDIT] LOL Dick Wang.
Reginald Assblaine is offline   Reply With Quote
Old March 29th, 2009, 01:40 PM   #3
WW_BITEME!! is Zombie fodder
 
WW_BITEME!!'s Avatar
 
Devious Tyrant
 
Join Date: Oct 2006
Location: NH, USA
Posts: 1,433
WW_BITEME!! is a corpse
Send a message via AIM to WW_BITEME!! Send a message via MSN to WW_BITEME!! Send a message via Yahoo to WW_BITEME!! Send a message via Skype™ to WW_BITEME!!
lol just noticed that also....classic....very classic

BEST WildWest Game Ever...and its FREE!!!
Get the game here... WildWest Files Here
WW_BITEME!! is offline   Reply With Quote
Old March 29th, 2009, 03:07 PM   #4
br0ken is Zomnomnomnom
 
br0ken's Avatar
 
Zombie Cat
 
Join Date: Nov 2008
Location: UK
Platform: PC
Steam ID: g0dz
Posts: 476
br0ken is infected
Rofl!
br0ken is offline   Reply With Quote
Old March 29th, 2009, 03:31 PM   #5
Peppermint is better safe than sorry, better safe than sorry, better sa...
 
Peppermint's Avatar
 
Senior-Senior Member
 
Join Date: Dec 2008
Location: Montana
Platform: PC
Steam ID: Peppermynthe
Posts: 253
Peppermint is infected
I have the feeling this may be an elaborate April Fool's joke, BUT...

it's a pretty damn cool image to think of all the infected computers being taken over at once by a super computer.
Peppermint is offline   Reply With Quote
Old March 29th, 2009, 05:16 PM   #6
TheCrazyCat is happy with Pleinair
 
TheCrazyCat's Avatar
 
Chicago Ted
 
Join Date: Nov 2008
Location: NY
Steam ID: muramusa
Posts: 2,318
Blog Entries: 2
TheCrazyCat was killed in the first minute
Send a message via AIM to TheCrazyCat Send a message via Yahoo to TheCrazyCat
Wait super computer = Tank?

TheCrazyCat is offline   Reply With Quote
Old March 30th, 2009, 03:39 PM   #7
RonanP is a Mutherfucking G thang
 
RonanP's Avatar
 
I am Batman.
 
Join Date: Dec 2008
Posts: 520
RonanP is infected
Lol... Skynet.

rep if you like.
RonanP is offline   Reply With Quote
Old March 30th, 2009, 05:30 PM   #8
redfuzzy is blah
 
redfuzzy's Avatar
 
Zombie Cat
 
Join Date: Jan 2009
Steam ID: Redfuzzy
Gamertag: red15squirrel
Posts: 402
redfuzzy was killed in the first minute
Any article that uses the phrase "bad guys" is either very poorly written, or obviously a prank. It's the latter obviously.

Originally Posted by MyNameDidntFit View Post
Most people pack a gun when they need defence, I just have a Hello Kitty backpack full of HK merchandise.

Last edited by redfuzzy; March 30th, 2009 at 05:35 PM..
redfuzzy is offline   Reply With Quote
Old March 30th, 2009, 05:34 PM   #9
Abyss Crown is nou
 
Abyss Crown's Avatar
 
Ahoy!
 
Join Date: Feb 2009
Location: British Columbia
Platform: PC
Steam ID: AlbertanBoss
Posts: 3,675
Blog Entries: 16
Images: 1
Abyss Crown is infected
Send a message via AIM to Abyss Crown Send a message via MSN to Abyss Crown
It sounds like another KTTV Fox 11 story.

Fear? No; I am the mind killer.
Abyss Crown is offline   Reply With Quote
Old March 31st, 2009, 07:24 PM   #10
086goinfast is Zombie fodder
Devious Tyrant
 
Join Date: Oct 2006
Posts: 11,191
086goinfast
So, in short unless you want to be buying a new computer soon(cause it will be fried) leave it off(including your cable modem or whatever method of internet connection you use) for that day.

My Games:
NR2K3(patched;300+ tracks;2000+ cars)online name-086goinfast
ST:BC(KM1.0-custom) ST:Legacy(custom)
ST:Armada(custom-will upload) ST:Armada2(custom-will upload)
SW:EAW(custom) SW:FOC(custom)
086goinfast is offline   Reply With Quote
Old March 31st, 2009, 08:52 PM   #11
eridor0 is Infallible
 
eridor0's Avatar
 
Rob Zombie
 
Join Date: Feb 2009
Location: My Own Little World
Platform: Xbox 360
Steam ID: eridor0
Gamertag: Arcturion720
Posts: 614
eridor0 is infected
I recall reading that leaving it off that day would not work. And I recall it pretty well, since I read it today in the Yahoo articles.

Khorne Flakes! They're Heretically Delicious.

PC + Xbox360 Alliance Member
eridor0 is offline   Reply With Quote
Old March 31st, 2009, 10:42 PM   #12
Angel_Eyes is a Flawless Cowboy
 
Angel_Eyes's Avatar
 
Devious Tyrant
 
Join Date: Jul 2008
Location: Pennsylvania
Platform: PC
Posts: 2,147
Angel_Eyes is infected
Theres going to be a story on the news about this on Channel 6 news
Angel_Eyes is offline   Reply With Quote
Old March 31st, 2009, 11:18 PM   #13
PMS Betty B is BURROW OWL
 
PMS Betty B's Avatar
 
I kick ass for the Lord!
 
Join Date: Jan 2009
Location: A box.
Platform: PC & XBox
Steam ID: bettybiscuits
Gamertag: PMS ATOMICBetty
Posts: 3,164
Images: 2
PMS Betty B was killed in the first minute
Send a message via AIM to PMS Betty B Send a message via MSN to PMS Betty B
OH NOES!
I dont know whats worse! this deisel worm or having to keep my computer off for a day and not being able to check my facebook! D:
GASP! oh woe is me...


||PMS|H2O Clan||

Twitter (>_> Yeah I have one): @Mayhem_Em

MyNameDidntFit [Union]: Eat them
MyNameDidntFit [Union]: Grow fat
MyNameDidntFit [Union]: And then I will cook you
PMS Betty B is offline   Reply With Quote
Old April 1st, 2009, 01:18 PM   #14
DrunkSnake is Paying attention to his user title ;)
Devious Tyrant
 
Join Date: Aug 2007
Posts: 4,311
DrunkSnake
Linux = WIN
DrunkSnake is offline   Reply With Quote
Old April 2nd, 2009, 12:12 AM   #15
Evil is Insanity At Its Best
 
Evil's Avatar
 
Devious Tyrant
 
Join Date: Jul 2005
Location: Psychiatric Hospital
Posts: 47,503
Evil was killed in the first minute
Meh. This worm was a dud.
Evil is online now   Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes


Similar Threads
Thread Thread Starter Forum Replies Last Post
DownAdUp worm? PsyK Off Topic 2 January 22nd, 2009 01:30 AM
Tank tactics Barlowe L4D General Discussion 26 December 21st, 2008 12:42 PM
DoW tactics: post them here! Exile General Games Discussion 0 February 1st, 2007 05:50 PM


All times are GMT. The time now is 06:59 AM.


Google Powered Left4DeadForums.com Site Search


  
Sponsors

Powered by vBulletin® Version 3.8.5
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.3.2
Join FinalEscape - An exciting, free browser-based sci-fi MMORPG!!

Copyright ©2009 - Left4DeadForums.com
Left 4 Dead, the Left 4 Dead logo, Steam and the Steam logo are trademarks
and/or registered tradmarks of Valve Corporation in the United States and other countries.
Xbox, Xbox 360, Xbox LIVE are trademarks of the Microsoft group of companies.
All other copyrights and trademarks are property of their respective owners.

An ActiveIdeas.com project.