New homeland security tool to detect Conficker worm

March 30, 2009
The US Department of Homeland Security released a tool to detect whether a computer is infected by the Conficker worm

Enlarge

The US Department of Homeland Security released a tool to detect whether a computer is infected by the Conficker worm

The US Department of Homeland Security released a tool on Monday to detect whether a computer is infected by the Conficker worm.

The department, in a statement, said the detection tool for the Conficker worm, also known as DownAdUP, had been developed by the US Computer Emergency Readiness Team (US-CERT).

"While tools have existed for individual users, this is the only free tool -- and the most comprehensive one -- available for enterprises like federal and state government and private sector networks to determine the extent to which their systems are infected by this worm," said US-CERT director Mischel Kwon.

"Our experts at US-CERT are working around the clock to increase our capabilities to address the cyber risk to our nation's critical networks and systems, both from this threat and all others," he added.

The worm is suspected to have infected million of computers running the and Windows maker Microsoft has offered a 250,000 dollar bounty for those responsible for the worm.

US-CERT recommended that Windows users apply Microsoft security patch MS08-067 to help provide protection against the worm.

The patch is designed to prevent an attacker from remotely taking control of an infected computer system and installing additional .

Malware could be triggered to steal data, generate spam attacks or turn control of infected computers over to hackers amassing "zombie" machines into "botnet" armies.

The worm is programmed to modify itself on Wednesday, April Fool's Day, according to specialists.

Conficker had been programmed to reach out to 250 websites daily to download commands from its masters, they said, but on Wednesday it will begin connecting with 50,000 websites daily for instructions.

The hackers behind the worm have yet to give it any specific orders.

"That's the interesting thing. The only thing the worm is being asked to do is to ask for further instructions," Steve Trilling, vice president of security firm Symantec, told the CBS program "60 Minutes" in a story aired on Sunday.

More information:
-- US-CERT recommends that Windows Operating Systems users apply Microsoft security patch MS08-067 (http://www.microso … S08-067.mspx) as quickly as possible to help protect themselves from the worm.

-- Instructions, support and more information on how to manually remove a Conficker/Downadup infection from a system have been published by major security vendors. Each of these vendors offers free tools that can verify the presence of a Conficker/Downadup infection and remove the worm:

Symantec:
http://www.symante … 1316-0247-99
Microsoft:
http://support.mic … om/kb/962007
http://www.microso … nficker.mspx

(c) 2009 AFP

Filter


Move the slider to adjust rank threshold, so that you can hide some of the comments.


Display comments: newest first

atphan
Mar 30, 2009

Rank: 5 / 5 (2)
Hopefully as our populace becomes more internet and computer savvy, things like this will have less impact.



http://blog.benchside.com
atarikg
Mar 30, 2009

Rank: 1 / 5 (1)
I hate that kinda hackers and I hate why those Anti-Virus Softwares are too expensive. They are not affordable...
shyataroo
Mar 31, 2009

Rank: 3.5 / 5 (2)
Its probably just going to continue asking for instructions until it has enough computers to do whatever it needs. (hacking the CIA database?)
Doug_Huffman
Mar 31, 2009

Rank: 2.3 / 5 (3)
Yeah, right, I'm going to load a free government provided snoop-my-computer program, this after Echelon and Carnivore and all. Right. Fools.

Prepare to be assimilated by the BOG Obongo. Resistance to Obamination is futile. BOG Brother is watching - OBEY!
RayCherry
Mar 31, 2009

Rank: not rated yet
Hopefully as our populace becomes more internet and computer savvy, things like this will have less impact.


The only current solution is to disconnect, but like social isolation, this is only part of the solution.

With the government providing a response to this virus, it is an indication of the threat posed by millions of interconnected computing devices under only partial control of their owners. Operating system developers, software distributors and retailers are currently ineffective in limiting the opportunities for large scale computing under corrupt or criminal control. The end users are insufficiently educated, and the commercial market can not afford to deter new consumers with a steep obligatory learning curve about Internet security. Hence, none exists apart from annoying and completely evadable pop-up warnings, (if anything at all), and the eventual disfunctionality of the computer due to viruses 'contracted'.

The virus writers are not going to stop. It is subversive science, but science none the less. Trial and error, measured success, progress and evolution. Organic and openly available to any inquisitive mind.

More, it has a commercial value that was recognised many years back by software companies ... the more viruses, the more anti-virus market. Worse, organised crime will use viruses, and the authors of them, to make money estimated to be far in excess of the profits of anti-virus software. Last, (if conspiracy like), we have only to imagine what governments world-wide are doing with this portal into our lives - and into each others national boundaries.

The fact is, most computer users are playing and socialising with a tool that can, if used correctly, bring a country/economy temporarily to its knees.

Who knows? Perhaps it is happening right now.

Paranoia is not going to help. Is the Internet, (and all that available raw computer processing power), as much a risk as a benefit? That is the question.
Rank 4 /5 (6 votes)
Related Stories
Relevant PhysicsForums posts
  • How to calculate total compressibility in liquid porous solid system
    created3 hours ago
  • Need help reading 3-D
    created23 hours ago
  • A way to send and receive wireless data
    createdFeb 11, 2012
  • Calling function with no input argument
    createdFeb 10, 2012
  • Force free body diagram problem on gym equipment
    createdFeb 10, 2012
  • Empirical data regarding shower heads and water
    createdFeb 10, 2012
  • More from Physics Forums - General Engineering

More news stories

Google might launch Drive for cloud storage soon

(PhysOrg.com) -- Google's next big move, according to the Wall Street Journal, is a cloud storage service called Drive. Hardly first to the plate, Google is simply catching up to introducing its cloud reposi ...

Technology / Internet

created 11 hours ago | popularity 4.8 / 5 (5) | comments 4 | with audio podcast report

Iran blocks email, restricts net access: reports

Iran has further restricted access to the Internet and blocked popular email services for the past few days, in a move a top lawmaker said could "cost the regime dearly," media reports said on Sunday.

Technology / Internet

created 4 hours ago | popularity 5 / 5 (1) | comments 3

Love a click away in Indonesia's Twitter Republic

He was a geeky kid from Yogyakarta, she a glamorous city girl in Jakarta. In a country with one of the world's most vibrant social networking scenes they fell in love on Twitter.

Technology / Internet

created 12 hours ago | popularity 4 / 5 (1) | comments 0

Walney offshore wind farm is world's biggest (for now)

(PhysOrg.com) -- The Walney wind farm on the Irish Sea--characterized by high tides, waves and windy weather--officially opened this week. The farm is treated in the press as a very big deal as the Walney ...

Technology / Energy & Green Tech

created Feb 11, 2012 | popularity 4.2 / 5 (13) | comments 45 | with audio podcast weblog

Navy to begin tests on electromagnetic railgun prototype launcher

The Office of Naval Research (ONR)'s Electromagnetic (EM) Railgun program will take an important step forward in the coming weeks when the first industry railgun prototype launcher is tested at a facility ...

Technology / Engineering

created Feb 06, 2012 | popularity 4.5 / 5 (17) | comments 94 | with audio podcast


Overeating may double risk of memory loss

New research suggests that consuming between 2,100 and 6,000 calories per day may double the risk of memory loss, or mild cognitive impairment (MCI), among people age 70 and older. The study was released today and will be ...

Scientists discover molecular secrets of 2,000-year-old Chinese herbal remedy

For roughly two thousand years, Chinese herbalists have treated Malaria using a root extract, commonly known as Chang Shan, from a type of hydrangea that grows in Tibet and Nepal. More recent studies suggest that halofuginone, ...

New method to examine batteries -- MRI from the inside

There is an ever-increasing need for advanced batteries for portable electronics, such as phones, cameras, and music players, but also to power electric vehicles and to facilitate the distribution and storage of energy derived ...

Injured boomers beware: Know when to see doctor

(AP) -- It happened to nurse Jane Byron years after an in-line skating fall, business owner Haralee Weintraub while doing "men's" push-ups, and avid cyclist Gene Wilberg while lifting a heavy box.

Lab study raises questions over nano-particle impact

Tests involving chickens have raised questions about the impact on health from engineered nano-particles, the ultra-fine grains commonly used in drugs and processed foods, scientists said on Sunday.

A mitosis mystery solved: How chromosomes align perfectly in a dividing cell

Although the process of mitotic cell division has been studied intensely for more than 50 years, Whitehead Institute researchers have only now solved the mystery of how cells correctly align their chromosomes during symmetric ...