Archive for category Alerts

More Info on Conficker.C

Head on over to the SRI International web site to read a general technical analysis of the Conficker worm, or read the detailed analysis of Conficker.C.  Both documents are very informative reading.  I was quite surprised to find that Conficker uses a sophisticated peer-to-peer communication scheme and, in newer revisions, very new cutting edge encryption algorithms developed at MIT.

Remember, always keep your firewall and antivirus software running and up-to-date.   Conficker.C has great potential to do lots of damage and to spread quickly.

No Comments

Alert: Conficker.C Worm

A new worm is set to trigger on April 1st of this year.  Win32/Conficker.C is a worm capable of blocking security related websites, terminating system security services and downloading component files using time-based generated URLs.

It does appear that this worm also uses a form of DLL injection, which will make it difficult to remove.    Matters are further complicated by the fact that the worm monitors and terminates many popular antivirus/process tools.

Make sure you have updated your antivirus and firewall software for this threat.  It has the potential to be a bad one!

No Comments