Showing posts with label Virus. Show all posts
Showing posts with label Virus. Show all posts

Thursday, January 7, 2010

5 Most Active Virus Families


1. STUH
Trojan of Stuh family can record key strokes on a keyboard and peer the password entered by PC users. Not only that, this virus will also disable the Automatic Windows Up-date feature so that the PCs are prone to get attacked by other dangerous viruses.

2. FRAUDLOAD
This virus is one of programs which is called Rogue AntiVirus (fake antivirus). This destroyer program infects a PC through a security hole found in an application. Furthermore, the virus displays a fake virus message that hooks PC users buying "full version" fake antivirus via credit card.

Monday, April 13, 2009

Conficker Attacks Stiil Continue On University of Utah

Conficker virus attacks have not stopped yet. Hundreds of personal computer (PC) at the University of Utah become the victims of the virus. 

Not less than 700 computers in this prestigious educational institution have been infected by conficker. Initially, this virus was detected since thursday, 9 April. However, suddenly in the next day, conficker spread very quickly, from the hospital of the campus, school of health, faculties of pharmacy and nursing and health. 

Consequently, more data have been lost because of damaged and stolen. "The virus attacks the desktop, and stole important data such as credit card numbers and other bank information," said spokesman of Utah University, Chris Nelson, as quoted Associated Press, Tuesday (14/4/2009). 

From data collected, most likely if the virus has been spreading through the digital camera and intelligent mobile devices  of employees and staffs in the environment around the campus. 

Sunday, March 15, 2009

April 1st, A New and More Dangerous Conficker Comes Out

Worm Conficker has spread so widely and  new more dangerous variants have come out. This was told by security experts, Ben Greenbaum,  Symantec's Senior Research Manager. 
  
"The Conficker  creator have strengthened the ability of it so that it can control the infected computers to connect to 50 thousand domains," said Geenbaum as quoted from CNet site. 
  
The new worm called Conficker C is able to block the security software, block omputers' connection from the security site, and download trojans. It is also programmed to start connecting to 50 thousand domains on April 1st, to receive updates or new programs. While the previous versions contact only 250 domains. 
  
Some large companies like Microsoft, Symantec, and others, have been trying to prevent the worm by locking the domains that have been used by the worm in distributing its updates. 
  
Conficker is first detected in November 2008, and believed to have infected more than 15 thousand computers. A new variant, Conficker B, has been detected since a month ago. This worm has the ability to spread via network and USB by the autorun function. 
  
Some victims were even military agencies of a country. This worm even caused an advanced fighter aircraft failed to take off. 
  
One of the domains which has been targeted by Conficker is Southwest airline. However, spokesperson of Southwest said as of now there are no signs of damage due to the malicious program. 
  
At the same time, security experts recommend that computer's users  update their patch and anti-virus software. Microsoft offered the prize of about US $250 thousand for any information leading to the perpetrator behind Conficker

Friday, March 13, 2009

Watch out of Kido

Kaspersky Lab detects a new modification of Kido, a.k.a conficker virus. This latest variant is different from the previous because it adds a Trojan function to the previous version of the dangerous program. 

Net-Worm.Win32.Kido.ip, Net-Worm.Win32.Kido.iq, and other variants are modified forms of Kido, which can prevent the antivirus products on the infected machine. 

Vitaly Kamluk, senior expert of the Kaspersky antivirus, said so far the new version of Kido does not indicate a spreading threat. "However, if the current version of Kido is replaced by the latest variant, it is very difficult to fight the maker of this dangerous program," he added. 

The Kido worm has a functionality of Trojan downnloader, meaning it sends a dangerous program to infect computers. The infection of Kido was first detected in November 2008.