Conficker.c

Discussion in 'Gaming' started by }SoC{SainT, Mar 26, 2009.

  1. }SoC{SainT

    }SoC{SainT Well-Known Member

    Age:
    34
    Posts:
    1,328
    Likes Received:
    0
    Joined:
    May 29, 2005
    Location:
    Oregon
  2. Biomechanica

    Biomechanica Well-Known Member

    Posts:
    277
    Likes Received:
    0
    Joined:
    Oct 8, 2005
    Location:
    Holland
    This worm is by no means new, however, it's reach steadily growing. Also, if you keep your PC up to date, there is little chance of infection. It exploited a whole fixed in the Microsoft's ms08_067 advisory, and actually came out AFTER the advisory, meaning if you just updated you're fine. Now, it still spreads for removable media, but you should have disabled autoplay on all (elevated) accounts anyway..

    Also, a virus scanner doesn't actually keep you safe ;D
    I'm not sure if I'm allowed to link you, but their ways of protection are fairly easy to bypass, and rootkits are getting more and more sophisticated. A good example would be Blue pill, Blue Pill @ InvisibleThings.org, bluepillproject.org

    EDIT - Typo
    EDIT 2 - I would also like to point out htat Blue Pill was written by Joanna Rutkowska, a WHITE HAT RESEARCHER! This is merely research/POC code, but it's message is clear. Joanna also released RedPill.c, which can detected whether you're running in a virtual environment has also been released by her.
     
  3. scarletham

    scarletham Well-Known Member

    Age:
    33
    Posts:
    1,163
    Likes Received:
    0
    Joined:
    Aug 27, 2005
    Location:
    Chicago
    I don't remember the last time I ran my Windows box with a firewall on. Uh oh...
     
  4. whitebull

    whitebull Well-Known Member

    Posts:
    53
    Likes Received:
    0
    Joined:
    Mar 28, 2009
    thank you much for this information.
     
  5. .ZERO

    .ZERO Nigga wit a PSD

    Age:
    32
    Posts:
    2,220
    Likes Received:
    1
    Joined:
    May 28, 2006
    Location:
    #gamerenders
    New? this has been around since october, and this varient since early Feb, if you've installed all windows updates as soon as they are released and don't use autorun features for usb dives, you'll be fine.

    From a technical perspective, I'm quite excited to see what the payload will be on 01/04/09
     

Share This Page