Conficker finally wakes up
By Barry Collins
Posted on 9 Apr 2009 at 08:51
More than a week after the 1 April scare passed without incident, the Conficker worm finally appears to be active.
Researchers at Trend Micro have spotted the worm updating via peer-to-peer nodes and dropping a payload on to infected machines.
It's still not clear exactly what the payload is doing, although it's suspected to be connected to the Waledac family of malware, which has been used in the past to build huge botnets and steal data from infected PCs.
The Trend Micro blog reports that the new variant runs in random file/service names, and then deletes itself afterwards, leaving no trace behind.
The researchers claim the file also connects to the MySpace, MSN, Ebay, CNN and AOL websites, although it's reported to be merely checking there's an active internet connection, rather than launching a denial-of-service attack on those sites.
Trend Micro claims the new update also has an "untrigger date" of 3 May, when the worm will shut down.
You can check if your machine is infected with the worm by visiting the Conficker Eye Chart.
From around the web
advertisement
- Laptop bag reviews: nine tested
- Sony VAIO T Series Ultrabook review: first look
- Revealed: the military standards and robots HP uses to test its laptops
- Windows 8: multi-monitors and double standards?
- Why is TalkTalk's year-old porn filter suddenly big news?
- Why are laptop screens so far behind mobiles?
- HP EliteBook Folio review: first look
- The shoebox-sized all-in-one printer
- Forget the Ultrabook: here comes the HP Sleekbook
- HP Spectre XT review: first look
- Why you have to be left in the dark on OS patches
- Is Microsoft mismanaging Windows on ARM?
- Dealing with spam surrogates
- Why 3G broadband can be better and cheaper than ADSL
- Is Twitter bad for business?
- Publishing your email address isn't a security disaster
- Why you'll need a fax machine to develop iOS apps
- Learning to adapt to the mobile web
- Why you shouldn't use WPS on your Wi-Fi network
- Disabled users suffer when software breaks the rules
advertisement
