30 May 2009

Conficker and Kido - Remove the Great and Terrible Conficker here. By: Konstantin Artemev

Conficker is very difficult to uncover for your network operators because of conficker’s complex malicious algorithms. This year conficker has attacked from 9 to 15 million of computers all over the world. Since SQL Slammer in 2003 conficker is supposed to be one of the most widespread spyware. The unified armed forces of the Federal Republic of Germany reported about conficker infection in their network on 2 February of 2009. The French Navy was attacked on the 15th of January, 2009 and was hardly recovered after several aircrafts were forced to land on several airbases in France.

British House of Commons has been attacked with conficker a little while since, as British newspaper reports. The UK Ministry of Defence reported about the virus in their administative networks. Conficker agitated network death in many business and state organizations. Various Royal Navy warships and Royal Navy submarines, and hospitals across the city of Sheffield turned to be down under conficker’s attack. Conficker A happened on November,21, 2009 and there is no treatment against conficker A since then.

Imagine yourself, if such big and complex networks as British, French and other armed forces couldn’t resist against conficker attack how can your little defenseless computer resist against such danger?Like hepatite or bird flu, conficker has several subtypes. Confickers A, B, C, D download daily from any of 250 pseudorandom domains over 8 top-level domains. Conficker B came out on the Web stage on December,29, 2009. Conficker A treats HTTP for its distribution and downloads itself from trafficconverter.biz. Conficker B developes DLL-based AutoRun trojan on attached removable drives.

MS08-067 vulnerability in Server service is the main target of conficker A and, unfortunately, there is no simple way to escape this type of conficker. Blocking DNS lookups and disabling autoupdate can help to prevent your PC against conficker B and C, but conficker D does an in-memory patch of DNSAPI.DLL to block lookups of anti-malware related web sites. Conficker B and conficker C use dictionary attack on ADMIN shares as their infection vector. All web sites associated with anti malicious programs find themselves blocked or inaccessible. There are five basic symptoms, combination of which gives you a right to suspect of conficker virus onto your computer.

Disabling certain system services such as Automatic Updates, operating system Defender and others must make you become alerted. Congestion on local networks disturbs you more and more. If you noticed that your account lockout policies were disturbed you should certainly to verify other signs of conficker onto your computer. Conficker Fast Heal is an easy and fast solution for all users, noticed conficker happenance onto their PCs. You can prevent conficker virus with the facilitate of high quality anti virus and anti spyware such as True Sword from Security Stronghold.