we knew it would start doing something as of April 1st and everyone has been watching closely to see what it is doing well here are some updates, it is now infecting with a fake/rogue antivirus program hoping to get people to fall for it and give their credit card info and purchase the fake product. It is definitely using peer to peer networks to spread so if you do use any type of peer to peer programs be very very careful (limewire, kazaa etc).
DOWNAD/Conficker Watch: New Variant in The Mix?
Conficker Shows Its Colors, Installs Rogue Anti-virus
Conficker botnet stirs to distribute update payload
Conficker Worm Awakens, Downloads Rogue Anti-virus Software
Analysis: Confounding ConfickerÂSymptoms And Solutions
they are now finding ties to the same cybercriminal group that wrote the Storm botnet so it is likely the same group doing all of these.
New in this variant:
It includes previously unseen self-removal functionality to remove itself from the infected host on May 3, 2009
guess it is a wait and see game with this one.
zep516
pkspigs
Related Discussions
Backdoor Sdbot BKV Trojan
Q
Computer security hi-jacked - WARNING!!
Q
My netbook got hit with a virus
Q
Messages telling me I need Flash & Java - I already have them.
Q
zep516
ravencajun Zone 8b TXOriginal Author
asolo
ravencajun Zone 8b TXOriginal Author