Don't fret about Conficker: Here's what to do
March 31, 2009 By JORDAN ROBERTSON , AP Technology Writer(AP) -- The Conficker worm, a nasty computer infection that has poisoned millions of PCs, will start ramping up its efforts Wednesday to use those machines for cybercrimes. It's unclear whether everyday PC users will even notice, but this is as good an excuse as any to make sure your computer is clean.
There are some easy ways to figure out whether a computer has the Conficker worm, and free tools available for getting rid of it.
One scary thing about Conficker is that it spreads without human involvement, moving from PC to PC by exploiting a security hole in Microsoft Corp.'s Windows operating system. The hole was fixed in October, but if your computer doesn't get automatic updates from Microsoft, you could be vulnerable.
Lots of computer worms disable antivirus software outright, which can be a tip-off that something is wrong. But Conficker doesn't do that. Instead, Conficker blocks infected PCs from accessing the antivirus vendors' and Microsoft's Web sites, so victims won't get automatic updates and can't download the Conficker removal tools that those companies have developed.
So see what Web sites you can visit. If you can navigate the Internet freely except for sites owned by Microsoft or antivirus vendors such as Symantec Corp., McAfee Inc. or F-Secure Corp., your PC might have Conficker or a similar bug.
Fixing the problem gets a little trickier.
The best remedy is to have a friend - whose computer is not infected - download a removal tool from Microsoft or one of the antivirus vendors. Then that person should e-mail the tool to you.
A list of the free Conficker removal programs is available on the Web site of the Conficker Working Group, an alliance of companies fighting the worm. The removal programs will take care of themselves, for the most part, scanning your system and purging the worm.
One thing to note: Conficker blocks infected machines from running removal tools with "Conficker" in the name. So users might have to change the name of the file (one you've saved the tool to your desktop, right-click on it and select "rename") before running it. The program's instructions will let you know if you need to do this. Many antivirus vendors have already changed the names in their removal tools - in some cases calling the file a misspelled variant of "Conficker" - to trick the worm into letting the program run.
Businesses have a bigger challenge, because Conficker has yet another method for evading detection. Once the worm is inside a machine, it applies its own version of the Microsoft patch that fixes the vulnerability Conficker exploited in the first place. So a business running a standard network scan, looking for unpatched machines, might come up empty-handed, even though some computers on the network are infected.
The scans need to take a deeper dive into the machines on the network - something an antivirus vendor's service should enable. For government agencies, contractors and operators of critical infrastructure, the Department of Homeland Security also has released a network-detection tool for Conficker.
---
On the Net:
List of Conficker removal programs:
http://www.confickerworkinggroup.org/wiki/pmwiki.php?nANY.RepairTools
Homeland Security's announcement of its detection tool:
©2009 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.
-
Conficker Worm Prepares For A New Release On April 1
Mar 27, 2009 |
not rated yet |
0
-
New homeland security tool to detect Conficker worm
Mar 30, 2009 |
not rated yet |
0
-
The Raging Windows Worm has attacked over 8.9 Million Computers
Jan 19, 2009 |
not rated yet |
0
-
Help! How to avoid fast-moving computer worm
Jan 28, 2009 |
not rated yet |
0
-
Companies often overstate 3G cell speeds
Feb 18, 2009 |
not rated yet |
0
-
Engineers build first sub-10-nm carbon nanotube transistor
Feb 01, 2012 |
4.9 / 5 (33) |
30
-
Something old, something new: Evolution and the structural divergence of duplicate genes
Jan 31, 2012 |
4.6 / 5 (7) |
1
-
The hidden nanoworld of ice crystals: Revealing the dynamic behavior of quasi-liquid layers
Jan 30, 2012 |
5 / 5 (5) |
1
-
Stock market network reveals investor clustering
Jan 27, 2012 |
3.9 / 5 (23) |
8
-
Of microchemistry and molecules: Electronic microfluidic device synthesizes biocompatible probes
Jan 26, 2012 |
5 / 5 (2) |
0
-
How to tilt a object
8 hours ago
-
How to calculate total compressibility in liquid porous solid system
14 hours ago
-
Need help reading 3-D
Feb 11, 2012
-
A way to send and receive wireless data
Feb 11, 2012
-
Calling function with no input argument
Feb 10, 2012
-
Force free body diagram problem on gym equipment
Feb 10, 2012
- More from Physics Forums - General Engineering
More news stories
AT&T customers surprised by 'unlimited data' limit
(AP) -- Mike Trang likes to use his iPhone 4 as a GPS device, helping him get around in his job. Now and then, his younger cousins get ahold of it, and play some YouTube videos and games.
39 minutes ago |
5 / 5 (1) |
0
Japan's Fukushima reactor may be reheating: operator
Temperature readings at one of the crippled Fukushima nuclear reactors have risen above Japan's stringent new safety standard but there was no immediate danger, its operator said Sunday.
Technology / Energy & Green Tech
1 hour ago |
3 / 5 (2) |
0
Google might launch Drive for cloud storage soon
(PhysOrg.com) -- Google's next big move, according to the Wall Street Journal, is a cloud storage service called Drive. Hardly first to the plate, Google is simply catching up to introducing its cloud reposi ...
Iran blocks email, restricts net access: reports
Iran has further restricted access to the Internet and blocked popular email services for the past few days, in a move a top lawmaker said could "cost the regime dearly," media reports said on Sunday.
15 hours ago |
5 / 5 (3) |
5
Walney offshore wind farm is world's biggest (for now)
(PhysOrg.com) -- The Walney wind farm on the Irish Sea--characterized by high tides, waves and windy weather--officially opened this week. The farm is treated in the press as a very big deal as the Walney ...
Integrated pest management recommendations for the southern pine beetle
The southern pine beetle, Dendroctonus frontalis Zimmermann, is a chronic insect pest within pine forests in the southeastern United States. Under favorable environmental and host conditions, it is an agg ...
Cognitive impairment in older adults often unrecognized in the primary care setting
A new study published in the Journal of the American Geriatrics Society reveals that brief cognitive screenings combined with offering further evaluation increased new diagnoses of cognitive impairment in older veterans two to ...
Climate change causes harmful algal blooms in North Atlantic: study
Warming oceans and increases in windiness could be causing of an abundance of harmful algal blooms in the North Atlantic Ocean and North Sea, according to new research.
Many lung cancer patients get radiation therapy that may not prolong their lives
A new study has found that many older lung cancer patients get treatments that may not help them live longer. Published early online in CANCER, a peer-reviewed journal of the American Cancer Society, the findings suggest that p ...
Young adults allowed to stay on parents' health insurance have improved access to care
Researchers from Mount Sinai School of Medicine have found that laws permitting children to stay on their parents' health insurance through age 26 result in improved access to health care compared to states without those ...
Cancer rate 4 times higher in children with juvenile arthritis
New research reports that incident malignancy among children with juvenile idiopathic arthritis (JIA) is four times higher than in those without the disease. Findings now available in Arthritis & Rheumatism, a journal publis ...
Apr 01, 2009
Rank: 5 / 5 (1)
It's pathetic that a virus manages to infiltrate such critical military and government targets! Those institutions should know better then to rely on m$ piece of shit code and this virus is an obvious sign they do something VERY wrong!
Computers are here to stay and governments need to adopt secure and stable solutions which do not depend on a bunch of worst programmers on this planet.
http://en.wikiped...onficker
Apr 01, 2009
Rank: 5 / 5 (1)
The problem is that Windows is a flawed OS! Linux does not suffer from these problems. I have NEVER had a virus, worm, or other on my machine since switching over to it. I do have an anti-virus installed to scan out-going messages, so none piggy-back on any of my out-going emails to my "Windows dependent" friends, but it has never found anything. Poor Windows users :(