Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

Skip to comments.

Final Internet Worm Warning!!!
Self ^ | 03/31/09 | papasmurf

Posted on 03/31/2009 4:59:22 PM PDT by papasmurf

click here to read article


Navigation: use the links below to view more comments.
first previous 1-20 ... 41-6061-8081-100101-103 next last
To: papasmurf

This is for XP and after. Anything for 98 & ME?


81 posted on 03/31/2009 7:59:35 PM PDT by vigilante2 (Don't tread on me)
[ Post Reply | Private Reply | To 1 | View Replies]

To: mamelukesabre
That’s not what it says. It says if you are infected, you MIGHT not be able to get in.

I went to one of the links and got the following good news:

If you are reading this page, your computer is probably not infected with Conficker as the worm blocks access to most security web sites. If you have a computer that is infected, you will need to use an uninfected computer to download a specialized Conficker removal tool from. The tool is available here.

82 posted on 03/31/2009 8:01:26 PM PDT by GOPJ (Global Warming Hoax - Sucker Science In Action)
[ Post Reply | Private Reply | To 43 | View Replies]

To: Vn_survivor_67-68

I don’t have any other than to say that my point in this thread is that Steady State is only one component of a security strategy. Don’t depend on this (free) product to guarantee protection from and recovery from any and all threats. It certainly isn’t marketed that way by Microsoft.

This idea of rolling back to a prior state by utilizing an external journaling feature is fine. Similar things have been available in other operating systems for years. But no professional would rely on this approach alone. This is kind of a last resort — after the threat gets past actual defenses like AV and firewall (which this is not). And if that cache file is trashed or the disk goes, forget it. You’re then left with nothing if you don’t have an external backup.


83 posted on 03/31/2009 8:01:51 PM PDT by steve86 (Acerbic by nature, not nurture)
[ Post Reply | Private Reply | To 77 | View Replies]

To: All

BLOG:

http://blogs.zdnet.com/security/?p=2754

March 3rd, 2009
“Conficker worm to DDoS legitimate sites in March”
Posted by Dancho Danchev @ 12:40 pm

Categories: Anti Virus, Botnets, Browsers, Hackers, Malware......
Tags: Security, Internet Worm, Remote Code Execution, MS08-067, Conficker......

SNIPPET: “The reverse engineering of the domain registration algorithm not only made it possible to anticipate the upcoming command and control locations, but also, allowed security companies to pre-register them and lock them under the Conficker Cabal alliance with members such as Microsoft and the ICANN. Moreover, perhaps the most pragmatic mitigation solution implemented on a large scale so far, has been OpenDNS updated Stats System which automatically stops resolving Conficker’s latest domains, a feature which they introduced last month.

For the time being, the Conficker botnet remains in a “stay tuned” mode with the real malicious payload to be delivered at any particular moment. A patch has been available since October, 2008.”


84 posted on 03/31/2009 8:02:24 PM PDT by Cindy
[ Post Reply | Private Reply | To 2 | View Replies]

To: Vn_survivor_67-68
I would wait a day or two. The full effects of the conficker aren't known yet. They do know that it is waiting for instructions from the servers it calls out to.

Sophos
The thing is, no one knows, for sure, which servers they are, or how many there are. It's using randomly looking (but calculated) DNS Queries to contact sites to load new instructions from his bot-masters. Some of the randomly-looking, generated DNS queries clash with real, existing and delegated DNS Domains in the Internet.

I want to look at something and I'll post back in a few minutes.
85 posted on 03/31/2009 8:04:04 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 75 | View Replies]

To: Vn_survivor_67-68
Here is what MS says...

What is Windows SteadyState? Share computers, not headaches

What state is your shared computer in at the end of the day?


* Hard disk filled with downloaded files?
* Strange options configured?
* Programs installed that you don't want?
* System infected with viruses and spyware?
* Computer bogged down for unknown reasons?

Windows SteadyState, successor to the Shared Computer Toolkit, is designed to make life easier for people who set up and maintain shared computers.

How Windows Disk Protection works When disk protection is turned on, it creates a cache file to retain all the modifications to the operating system or program directories. Histories, saved files, and logs are all stored in the cache file which is created on the system partition. At intervals you designate, Windows SteadyState deletes the contents of the cache and restores the system to the state in which disk protection was first turned on.

How Windows Disk Protection works When disk protection is turned on, it creates a cache file to retain all the modifications to the operating system or program directories. Histories, saved files, and logs are all stored in the cache file which is created on the system partition. At intervals you designate, Windows SteadyState deletes the contents of the cache and restores the system to the state in which disk protection was first turned on.

Windows reinstallations are essentially a thing of the past. Now you can restart the computer to its original state.


I have not said, nor do I imply I would rely on this approach alone, as I do not. I said it's for those who aren't sure.


86 posted on 03/31/2009 8:20:21 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 75 | View Replies]

To: papasmurf; steve86

ok........I just clicked these 3 links from post #2 and got onto the pages quite normally, so I guess I don’t have it as of now.....right? And I shall assume I’m ok if I can do so for the next day or two?

Home users can apply a simple test for the presence of a Conficker/Downadup infection on their home computers. The presence of a Conficker/Downadup infection may be detected if a user is unable to surf to their security solution website or if they are unable to connect to the websites, by downloading detection/removal tools available free from those sites:
http://www.symantec.com/norton/theme.jsp?themeid=conficker_worm&inid=us_ghp_link_conficker_worm
http://www.microsoft.com/protect/computer/viruses/worms/conficker.mspx
http://www.mcafee.com


87 posted on 03/31/2009 8:48:48 PM PDT by Vn_survivor_67-68 (CALL CONGRESSCRITTERS TOLL-FREE @ 1-800-965-4701)
[ Post Reply | Private Reply | To 86 | View Replies]

To: Vn_survivor_67-68
You won't get me to agree to that. LOL

I do lknow that conficker itself installs a patch on your machine...

Conficker's patch gambit exposed by researchers

Scanning engines look to help in Conficker battle By Ellen Messmer , Network World , 03/31/2009

One technique used by the Conficker worm is to patch vulnerable Microsoft-based computers it has invaded in order to hide and prevent other malware from invading. One vendor, Qualys, says it upgraded its scanner Tuesday to be able to tell real Microsoft patches from stealthy Conficker patches.

"Last week researchers from the University of Bonn found out that once the worm installs itself, it closed that vulnerability [related to MS08-067]... "But the Conficker patch looks different."...

The work of the Bonn researchers in differentiating a real Microsoft patch from Conficker's stealthy bogus patch has provided the basis for Qualys upgrading its scanning engine to be able to be able to differentiate between the two, Kandek says. "The Conficker patch looks different. Before today, we'd say, you seem to be patched," he says. The scan could uncover machines that weren't suspected of being Conficker-infested.


Best advice I can give is to fully protect yourself, and stay protected until the dust settles.
88 posted on 03/31/2009 8:59:42 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 87 | View Replies]

To: papasmurf; Incorrigible

thank you.


89 posted on 03/31/2009 9:06:47 PM PDT by Coleus (Abortion, Euthanasia & FOCA - - don't Obama and the Democrats just kill ya!)
[ Post Reply | Private Reply | To 80 | View Replies]

To: papasmurf

well, it’s midnite here now, LOL, so if I got it I got it.....I’m nervous because I trade stocks actively.....hopefully even tomorrow. I dread the thought of a reformat! Thanks much.


90 posted on 03/31/2009 9:08:35 PM PDT by Vn_survivor_67-68 (CALL CONGRESSCRITTERS TOLL-FREE @ 1-800-965-4701)
[ Post Reply | Private Reply | To 88 | View Replies]

To: papasmurf

This has turned out to be no big deal. No problems to rep@@@@@~~~~

Username: Conficker
Password: ********
https://www.iamsoscrewed.com


91 posted on 03/31/2009 9:09:31 PM PDT by AH_LiveRight
[ Post Reply | Private Reply | To 88 | View Replies]

To: papasmurf

Avira says that if you have their AV and it is running, you should be okay.


92 posted on 03/31/2009 9:35:33 PM PDT by hsmomx3 (GO STEELERS!!!!!!!!!!!!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: papasmurf

All my important stuff is on flash drives. If my harddrive goes I am fine and dandy, I will leave my flash drives out of the machine for a day or two, I will put fresh flash drives in and save any new stuff, at the most I will lose a day or so of stuff, no big deal here. I doubt if it amounts to anything big anyway, this is just another crisis to keep people stirred up.


93 posted on 03/31/2009 9:40:11 PM PDT by calex59
[ Post Reply | Private Reply | To 1 | View Replies]

To: Gator113
Got a MacBook Pro a year and a half ago, and I am through with Windows.
94 posted on 03/31/2009 9:45:05 PM PDT by Cyropaedia ("Virtue cannot separate itself from reality without becoming a principal of evil...".)
[ Post Reply | Private Reply | To 73 | View Replies]

To: Vn_survivor_67-68

You’re welcome. Have fun, make money. :O)


95 posted on 03/31/2009 9:49:38 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 90 | View Replies]

To: Vn_survivor_67-68

Oh, I forgot to mention what I saw.


96 posted on 03/31/2009 9:55:06 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 90 | View Replies]

To: Coleus

You’re welcome.


97 posted on 03/31/2009 9:56:12 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 89 | View Replies]

To: calex59

I don’t keep anything other than installed programs on my PC, except recently downloaded stuff I put on the desktop (to remind me to file it away), I store everything on two 1 TB, mirrored usb drives.

The PC I use mostly is a tri-boot (XP, Vista, Linux) machine, and I “image” it, and burn it to a dvd.

Flash drive are a good way to safely store data, if you do take them out or “stop” them when not using them.


98 posted on 03/31/2009 10:06:11 PM PDT by papasmurf (Trow da' bum out!)
[ Post Reply | Private Reply | To 93 | View Replies]

To: papasmurf

so far so good....pre market open now, and everything I need from ameritrade loaded as usual, so I’m good to go....tks again


99 posted on 04/01/2009 5:18:02 AM PDT by Vn_survivor_67-68 (CALL CONGRESSCRITTERS TOLL-FREE @ 1-800-965-4701)
[ Post Reply | Private Reply | To 95 | View Replies]

To: papasmurf

Things are looking good here - any word on how overseas “pirated” computers are doing?


100 posted on 04/01/2009 6:32:48 AM PDT by GOPJ (Global Warming Hoax - Sucker Science In Action)
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-20 ... 41-6061-8081-100101-103 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson