Conficker C April 1

Junato

Junato

Lion's Arch Merchant

Join Date: Dec 2008

Between J&K spending time at the spacebar

Insert here

A/D

This is a discussion about the Conficker C that is supposebly going to come april 1st. I know what it does. The virus hacks all sites and computers making them produce network viral infections to all computers making them all bots. So far it has infected 9,000,000 computers. What is your take on it?

What will this mean to us as gw players?

Sjeng

Sjeng

Desert Nomad

Join Date: Aug 2005

in my GH

Limburgse Jagers [LJ]

W/

strange april fools joke is strange... or rather not funny.

Fril Estelin

Fril Estelin

So Serious...

Join Date: Jan 2007

London

Nerfs Are [WHAK]

E/

This is very serious (the "virus" bit, not the "April 1st" bit):
http://www.securityfocus.com/brief/935

The only way to prevent a (possible) catastrophy is to use the virus effect against this virus: viral propagation of the news that people need to patch their system, keep Windows fully updated and follow these professional advices:
http://extremesecurity.blogspot.com/...ke-pro-my.html

(it's so serious that the industry has set up a "Conficker Cabal" to try to fight this phenomenon; the virus uses state-of-the-art research that may make it extremely "sticky")

EDIT: a Q&A to read:
http://www.securityfocus.com/blogs/1802

jiggles

Desert Nomad

Join Date: Sep 2007

N/

I don't belive for a second its infect "over 9 million" computers. It's just like Storm, overly hyped up and in the end useless. 5k says nothing happens.

Fril Estelin

Fril Estelin

So Serious...

Join Date: Jan 2007

London

Nerfs Are [WHAK]

E/

Quote:
Originally Posted by jiggles View Post
I don't belive for a second its infect "over 9 million" computers. It's just like Storm, overly hyped up and in the end useless. 5k says nothing happens.
Would you care to compare your data to the data collected by SRI (see http://mtc.sri.com/Conficker/ )? I guess that if you're right, Microsoft and the other Conficker Cabal companies can lower their bounty well below the current $250,000.

jiggles

Desert Nomad

Join Date: Sep 2007

N/

Microsoft has never done anything to earn/gain my trust, theyre not going to get it because some other company agrees with them.

Junato

Junato

Lion's Arch Merchant

Join Date: Dec 2008

Between J&K spending time at the spacebar

Insert here

A/D

I would like to say right now no one cares, yet they will when they get infected.

jiggles

Desert Nomad

Join Date: Sep 2007

N/

Quote:
Originally Posted by Junato View Post
I would like to say right now no one cares, yet they will when they get infected.
Which isnt going to happen, people don't care because they have windows update on, and set it to automaticly install any new updates. Anyone with half a brain anyways. And considering the update has been out since october anyone who gets infected deserves it.

Fril Estelin

Fril Estelin

So Serious...

Join Date: Jan 2007

London

Nerfs Are [WHAK]

E/

Quote:
Originally Posted by Kanyatta View Post
over 9 million!?!?!!!?!
Some estimates say 12millions over all the worm variants. So more conservative numbers only quote 1-2 millions for variant B.

Quote:
Originally Posted by jiggles View Post
And considering the update has been out since october anyone who gets infected deserves it.
The problem lies with those people that are already infected and the people they can safely reach. It's the classical security problem of "perimeters", the worm is already inside "trusted" places.

You may soon start communicating via ProgramXYZ with someone infected, not knowing that behind the scene Net-Worm.Win32.Kido is installing itself silently because you have service A running but not service B (which friends told you to deactivate because it takes resources and serves no real purpose, and it makes games lag!).

Someone with half a brain like yours should have caught that! Surely if you get infected you deserve it!

(disclaimer: the scenario above is purely theoretical and only presented so that you can understand the problem is not as simple as stated; we surely won't talk 0day exploit here...)

jiggles

Desert Nomad

Join Date: Sep 2007

N/

If what you said translates into ;

I turned off service x to get better pings on online games and in the meantime compromised my computers security

Then yeah you deserve it.

Tyla

Emo Goth Italics

Join Date: Sep 2006

Doesn't this particular virus evade most security too? To be honest I've heard that it actually got into some of the most hidden files and shit (I dunno, military information, criminal records? I forgot what the story was, I just remember)

Fril Estelin

Fril Estelin

So Serious...

Join Date: Jan 2007

London

Nerfs Are [WHAK]

E/

Quote:
Originally Posted by Tyla View Post
Doesn't this particular virus evade most security too?
No it doesn't. It's got into these places (including UK's MoD...) because someone inadvertently "opened the door" to the worm, which then spread inside like it's designed to do.

FYI, the current versions of the worm are purely propagating, so they don't "harm" your computer other than being present while they shouldn't be there. But the problem is that it can transform into pretty much anything by downloading a new version using various mechanisms.

If you're protected by the latest Windows, antivirus and application updates, you shouldn't be at risk at all. But spread the word, so that people at risk have the time to fix the problem:
http://en.wikipedia.org/wiki/Conficker#Removal

Kanyatta

Forge Runner

Join Date: Jun 2006

Guildless, pm me

R/Mo

Quote:
Originally Posted by Fril Estelin View Post
Some estimates say 12millions over all the worm variants. So more conservative numbers only quote 1-2 millions for variant B.
Well, someone doesn't get the joke...

AidinSwiftarrow

AidinSwiftarrow

Frost Gate Guardian

Join Date: Jan 2008

Lion's Arch

R/Mo

My mom heard about this on 60 minutes :P

She said it originated from some 14 yr old(s) in Russia...

Anywho...this kind of stuff scares the bejesus out of me :S

RedNova88

RedNova88

Krytan Explorer

Join Date: Oct 2007

Behind you!

W/

On topic: I pray this doesn't get any worse than it already is. It's sad knowing that shit like this will never stop. No matter how strong an anti-virus or firewall becomes, there is always some determined hacker digging a hole through your defenses.

zwei2stein

zwei2stein

Grotto Attendant

Join Date: Jun 2006

Europe

The German Order [GER]

N/

Most dangerous thing about it is its ability to be updated ...

You can easily stop it by good computer hygiene now, but it can be updated with new ways to infect: network with million nodes is very effective at hunting down exploitable systems before they get patched. So much for "deserving infection".

It is harmless right now, doing nothing but breeding, but it can be updated with payload at any point. And since it is probably network for hire ... well, lots of bad stuff can be happening.

Junato

Junato

Lion's Arch Merchant

Join Date: Dec 2008

Between J&K spending time at the spacebar

Insert here

A/D

Uhm.... Its not a joke... Look it up in wikipedia and in google... Look at the facts...

Glodrion

Glodrion

Academy Page

Join Date: Jul 2006

The Netherlands

[ESRB]

W/

I think i actually have the vir

Sir Skullcrasher

Sir Skullcrasher

Furnace Stoker

Join Date: Jun 2005

California

15 over 50 [Rare]

W/Mo

I wonder once the virus hits tomorrow (4/1)

A) All the infected computers turn into spambots
B) All the computers get their information (personal kind) stolen ASAP
C) Hacker(s) use your computers as a relay for some crazy shit
D) Who ever it is... give us access to GW 2 beta! lol
E) Turn out it's the North Koreans *GASP*.. they're going to use all the computers to hijack japan's network! lol

sickle of carnage

sickle of carnage

Wilds Pathfinder

Join Date: Sep 2007

Textual Harassment [kTHX]

Just the fact that whoever did this is a *insert nasty word*er and put it on April 1st so nobody knew if it was a joke or real makes me angry.

Rhamia Darigaz

Desert Nomad

Join Date: Apr 2008

it's officially tomorrow and an explosion didn't happen...
i think it was an april fools joke

tortugan

tortugan

Krytan Explorer

Join Date: Jun 2005

[DVDF]

It's prolly nothing, as others already said, just keep your PC firewall up to be sure.

Karuro

Karuro

Lion's Arch Merchant

Join Date: Apr 2008

The Netherlands, Europe

Mystic Spiral [MYST]

W/

Quote:
Originally Posted by AidinSwiftarrow View Post
She said it originated from some 14 yr old(s)
Did she play .hack// ?

As the Pluto's Kiss virus from that series was made by a kid around that age :P

Quote:
In the real world, Pluto's Kiss, a virus written by a ten-year-old elementary school student, caused a simultaneous crash of all computers and network control systems on the Internet that did not run on the ALTIMIT OS, which subsequently became the dominant operating system worldwide. The Twilight Incident, also known as Pluto Again, and the Second Network Crisis is the series of disasters depicted in the .hack//Games. It involves the massive blackout and system shutdown at Yokohama, which results in multiple car accidents, fires throughout the city, various other system malfunctions in other parts of Japan, and various players of The World ending up comatose. It is caused by the glitching Morganna System, though it is eventually resolved with the full awakening of Aura. Kazushi Watarai is held responsible, despite being hospitalized for the majority of the incident.
Sidenote, news here said something about the creator being in China or something.

Junato

Junato

Lion's Arch Merchant

Join Date: Dec 2008

Between J&K spending time at the spacebar

Insert here

A/D

I would just like to say this was a fun discussion. Turns out that the virus will only infect the computers that already have another variant of the conficker virus.

Fril Estelin

Fril Estelin

So Serious...

Join Date: Jan 2007

London

Nerfs Are [WHAK]

E/

Quote:
Originally Posted by jiggles View Post
From what i recall you were the one saying something is going to happen, i was the one saying nothing would happen. Oh look nothing happend
Correction: you didn't see anything happening. This does not mean that nothing happened. Ever heard of "stealth"?

Karate Jesus

Karate Jesus

Forge Runner

Join Date: Apr 2008

Texas

Reign of Judgment [RoJ]

Me/

Quote:
Originally Posted by Junato View Post
I would just like to say this was a fun discussion. Turns out that the virus will only infect the computers that already have another variant of the conficker virus.
And in North America, that's only 6% of the computers running Windows. Most of the impact is in Asia apparently, which is where 43% of the infected computers are housed. Either way, it looks like it is just a hoax so far.

Source: http://www.msnbc.msn.com/id/29981552/ and other outside links from that site.

Tarun

Tarun

Technician's Corner Moderator

Join Date: Jan 2006

The TARDIS

http://www.lunarsoft.net/ http://forums.lunarsoft.net/

Verify that you have KB958644 installed. It was released October 15, 2008. If you wish scan your computer with applications like Malwarebytes Anti-Malware, SUPERAntiSpyware and Spybot S&D. If you need help getting these programs you can download my Anti-Malware Toolkit and get the Professional package.

Winterclaw

Winterclaw

Wark!!!

Join Date: May 2005

Florida

W/

Here's something I heard about it: a virus alert.

AidinSwiftarrow

AidinSwiftarrow

Frost Gate Guardian

Join Date: Jan 2008

Lion's Arch

R/Mo

Yeah, I had a virus and Malware-Bytes removed it...(not Conficker :P)

I have Malware-Bytes and FSeasyclean on my computer. Plus Norton 360...

I'd guess I'm pretty damn protected.

Lord Sojar

Lord Sojar

The Fallen One

Join Date: Dec 2005

Oblivion

Irrelevant

Mo/Me

<font color="red">Ok, take your silly shenanigans to OT. I have taken the liberty of deleting all the irrelevant posts from this thread. You can send complaints to my PM box, which I will make sure not to check. </font>

Conficker/Downadup is a serious threat, and the effects of today's update remain to be seen, at least as of this post.

Fril Estelin

Fril Estelin

So Serious...

Join Date: Jan 2007

London

Nerfs Are [WHAK]

E/

Quote:
Originally Posted by Rahja the Thief View Post
Conficker/Downadup is a serious threat, and the effects of today's update remain to be seen, at least as of this post.
Hopefully this is going to change in the near future:
http://www.securityfocus.com/brief/936

Junato

Junato

Lion's Arch Merchant

Join Date: Dec 2008

Between J&K spending time at the spacebar

Insert here

A/D

Check this blog.
I think this author is on to something.
http://tech.yahoo.com/blogs/null/135840

Elder III

Elder III

Furnace Stoker

Join Date: Jan 2007

Ohio

I Will Never Join Your Guild (NTY)

R/

At this time nobody knows the extent of harm that may have occurred or has yet to occur or may never occur.... practice good computer habits, stop downloading porn, and don't waste server space with useless conjecture. We know it is a serious threat and beyond that we don't know what will happen with it....

peace out

Lord Sojar

Lord Sojar

The Fallen One

Join Date: Dec 2005

Oblivion

Irrelevant

Mo/Me

I've actually grown quite tired of this thread and its speculation, blah blah blah. Once the effects are seen, if you would like to make a more serious thread about the issue and preventing it, feel free. Until then, keep silly April fools discussions to OT, where they belong.

So, without further to do....

<font color="red">Closed</font>