The Conficker worm: What should you do about it?

| | Comments (3) |

Not just the Internet but newspapers, TV and just about everybody you see on the street with just a little speck of geek in them is abuzz about the Conficker worm.

This malicious piece of code was supposed to get all medieval on us ... right about now, meaning April 1, with all sorts of nasty consequences, including the transmission of logins, passwords and other sensitive information out of our very own PCs and into the arms/hard drives of those who seek to harm us.

Could happen. Probably won't happen to you, but the danger persists.

For help on Conficker, I turned to my usual go-to source, ZDNet, where I perused the following:

Here are the high points:

Conficker, also known as Downup, Downandup, Conflicker and Kido, has been around for awhile in various forms — since last year, in fact. If you want to know much, much more about the worm, go to the Conficker Working Group wiki.

According to the Conficker Working Group, the worm can do some nasty things:

  • Block system services on Windows PCs that include Windows Automatic Update, Windows Security Center, Windows Defender and Windows Error Reporting
  • Connect to another computer or computers and begin infecting them
  • Collect sensitive information
  • Install additional malware
  • Attach itself to internal Windows utilities/services that include svchost.exe, explorer.exe and services.exe

And one of the main forms of entry for Conficker in its various forms are those ubiquitous USB flash-memory drives that we've all been using for the past many years ...

Also from the Conficker Working Group:

Experts say (Conficker) is the worst infection since the SQL Slammer. Estimates of the number of computers infected range from almost 9 million PCs to 15 million computers, however a conservative minimum estimate is more like 3 million which is more than enough to cause great harm.

OK, so it's bad.

What do you do about it?

Well if you don't run Windows, you're OK. While it's possible to spread Conficker via a Mac OS X or Unix/Linux computer, the worm itself won't affect those machines because like almost all malware, it's aimed at Windows PCs.

The way to protect yourself from Conficker and all manner of malware/worms/viruses/trojans/what-have-yous is to have a fully patched Windows system with all of Microsoft's security updates as well as an antivirus program with all of its current updates.

So if you're running, say, Windows XP or Vista, and if you have the Microsoft updates set to download and install automatically, you're OK on the first count, and Conficker probably won't hurt you.

And if you're running Norton Antivirus, McAfee Total Protection, AVG Internet Security or any number of competing products from reputable, well-known vendors, you'll also know about anything harmful before it affects your Windows installation.

For Windows users, I recommend Avast Home Edition, which is free for personal use, or Avast Professional Edition for the workplace.

But right here, right now, you can download Microsoft's Windows Malicious Software Removal Tool for free and do either a quick scan or full scan of your system. If you have Conficker and somehow don't know it, this tool should throw up a bunch of red flags sooner rather than later.

I downloaded the tool to try it. Once I ran it, a message in the window said that if you did have an infected PC, a quick scan (which takes only a few minutes) will tell you that you need to do a full scan — which could take several hours. I ran the quick scan, which didn't find anything amiss. So the antivirus on my work-supplied PC, which is Computer Associates' eTrust, seems to be doing its job.

Here's the bottom line: If your Windows box has all the latest Microsoft patches, if you have current antivirus software, and if you're not prone to downloading and running random .exe software files from all over the Web ... and if everything seems to be working fine, you're probably OK.

If you are running an unpatched version of Windows, don't use antivirus or haven't kept your "subscription" to its updates going, and if you regularly Google for free software from less-than-reputable sources, you might have a problem. If not now, then soon.

The last time I had to clear an XP machine of malware, there was no question that the machine was infected — it was barely functional. After a full day of scanning and malware-removal with Avast, all was well.

What we can learn from Conficker is that when there's a lot of publicity for a malicious attack on computers, the eventual outcome of that infection is usually not as bad as first thought. It's all those other times when you personally have a malware-infected PC that keeps you from using your computer and imperils your data. That's when you should really worry (and have more than one backup of your data).

And like my colleague Steven J. Vaughn-Nichols of Computerworld says, you could always avoid all of this angst by not running Windows.


3 Comments

I have just installed the Avast home edition on ma pc and it rlly working..really effective...catch the review of it and download if want...here it comes..http://antivirus.reviewcity.net/best-free-antivirus-software/63/

The best way is to use genuine windows xp and a good Kaspersky antivirus software.. thats it...there are only some instance you face such problems..

Its a bad luck..but most of the time the problem doesn't arise too often..

Leave a comment

Tech Talk column

Steven Rosenberg's weekly Tech Talk column, which appeared Saturdays in the Los Angeles Daily News through about October 2009, is available on the Daily News Technology page.

About this blog






Steven Rosenberg aims to learn what he does not know. He writes about it here.



About this Entry

This page contains a single entry by Steven Rosenberg published on April 1, 2009 11:50 AM.

Dell acknowledges recession/depression with sub-$500 laptop pricing ... plus an equipment rant was the previous entry in this blog.

Google's newest employee, the completely artificial CADIE — a pretty cool April Fool's joke is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Recent Comments

Best PC Security Software Reviews on The Conficker worm: What should you do about it?: Its a bad luck..but most of the time the problem doesn't arise too oft ...

Best PC Security Software Reviews on The Conficker worm: What should you do about it?: The best way is to use genuine windows xp and a good Kaspersky antivir ...

Antivirus City on The Conficker worm: What should you do about it?: I have just installed the Avast home edition on ma pc and it rlly work ...

Powered by Movable Type 4.25

Search this blog

Loading

LXer

Links

Daily News technology
LXer
Distrowatch
Linus' Blog
David Pogue
BoingBoing
Linux Today
TuxRadar
Linux.com
Linux Planet
The Open Road
Linux Outlaws podcast
Dan Lynch
Fabian Scherschel
The VAR Guy
Larry the Free Software Guy
Chess Griffin
Linux Reality podcast
Desktop Linux
Practical Technology
Linux Devices
ZDNet
ZDNet's Storage Bits
ZDNet U.K.
iTWire
CNet News
Webware
Beyond Binary
TechCrunch
The Register
Ars Technica
Reg Developer
Computerworld
Computerworld blogs
Steven J. Vaughan-Nichols at Computerworld
Debian
Planet Debian
Debian Forums
Debian News
debianHELP
debiantutorials.org
The Debian User
Wolfgang Lonien
Debian-News.net
Debian Administration
Debian Admin
Debian Weather
Aaron Toponce
Ubuntu
Xubuntu
Kubuntu
Edubuntu
Planet Ubuntu
Ubuntu Forums
Ubuntu Geek
Works With U
OMG! Ubuntu!
I' Been to Ubuntu
Tanner Helland
Dustin Kirkland
Ubuntu UK Podcast
Ubuntu Linux Help
Popey
Linux Mint
CrunchBang Linux
OpenBSD
OpenBSD Journal
OpenBSD Ports
OpenBSD 101
Planet.OpenBSD.nu
jggimi's OpenBSD live CD
DaemonForums
BSDanywhere
Marc Balmer
Denny's OpenBSD blog
Polarwave's OpenBSD Tips and Tricks
Binary Updates for OpenBSD
Puppy Linux
Damn Small Linux
Tiny Core Linux
Lucky 13's Linux blog (lots of Tiny Core)
Lucky 13's BSD blog
PCLinuxOS
Mandriva
Red Hat
Red Hat News
Red Hat Blogs
Red Hat: Truth Happens
Red Hat Magazine
CentOS
Planet CentOS
Fedora
Planet Fedora
Fedora Forums
Fedora Docs
Join Fedora
Slackware
Slackbuilds
Robby's Slackware Packages
Slackblogs
dropline GNOME for Slackware
GNOME Slackbuild
GWARE - GNOME for Slackware
Wolvix
Zenwalk Linux
Vector Linux
Slax
Splack Linux — Slackware for Sparc
Nonux
How to Forge
marc.info BSD and Linux mailing list archive
FreeBSD
FreeBSD, the Unknown Giant
A Year in the Life of a BSD Guru
NetBSD
hubertf's NetBSD Blog
PC-BSD
Daemon Forums
FreeBSD Forums
Planet FreeBSD
Evilcoder.org
miwi's Privat Blog
DragonFlyBSD
DragonFlyBSD Digest
DesktopBSD
BSD Talk podcast
BSD Magazine
Rhyous
OpenSolaris
MilaX
BeleniX
DeLi Linux
Linux Loop
Electronista
The Tech Report
Engadget
Gizmodo
Phoronix
xkcd – A webcomic of romance, sarcasm, math and language
Nixie Pixel
Technology for Mortals
Thoughts on Technology
ZaReason
System 76
Tiger Direct
NewEgg
DealExtreme

Advertisement

Other blogs

Live: U.S.-Chile at Home Depot Center in 100 Percent Soccer
Girls' basketball: Bell-Jeff wins again in Daily News High School Spotlight
Decision Time in Inside USC with Scott Wolf
Chow officially to Utah in Inside UCLA with Jon Gold
Countdown to Debian Squeeze in CLICK