CariDotMy

 Forgot password?
 Register

ADVERTISEMENT

View: 3048|Reply: 16

1 April 2009: VIRUS

[Copy link]
Post time 30-3-2009 08:00 AM | Show all posts |Read mode
saya dapat info dari kengkawan... mereka kata 1 april better jgn online banyak virus akan dilepaskan...maybe sempena april fool kot.......

semalam pulak aku terima masej dari AVAST anti virus yg aku pakai le ni...menyatakan 1 april banyak malware ke spyware...so masej tu remind kat user suruh update apa yg patut, windows  / micrososft security pun kena update ....so apa pendapat anda sekalian......
Reply

Use magic Report


ADVERTISEMENT


 Author| Post time 30-3-2009 08:16 AM | Show all posts
April 1st is a date when creators of malware are most occupied. This year First of April will be no exception also. There are currently a lot of reports in the media about potential new virus threats and speculation about the potential impact of new viruses such as the Conficker worm

Avast, creator of antivirus software announced today that they are ready for 1 April. They advice that you should make sure that your antivirus program and virus definitions are completely up-to-date and make sure that you have the latest Windows security updates, with that actions the risk is very small and there is no need to be unduly concerned.

Avast officials, about security of Avast on First of April  also said:

Whenever you switch on your computer, make sure that avast! is actually running. Some viruses are designed to specifically target antivirus programs and to turn them off, however avast! contains strong self-defense which is designed to prevent this. If avast! is running, you should see the normal blue a-ball in the bottom right corner of your screen. If it is switched off, it will contain a circle with a red line through it

So, be prepared no matter is it avast your antivirus program or some other, the concept is the same: make sure that your antivirus program and virus definitions are completely up-to-date and make sure that you have the latest Windows security updates.
Reply

Use magic Report

Post time 30-3-2009 08:29 AM | Show all posts
alamak.. abih aku nak wat kerja camner kalo tak online. kang email tak masuk..
Reply

Use magic Report

Post time 30-3-2009 09:22 AM | Show all posts

Reply #1 ratu_cinta's post


it's a worm/malware called conficker. it's been in the work since nov 2008. computer securities said that it's already infected about 10 mil computers and most of them resided in corporate network. this worm is like a spy. it's currently waiting for an instruction from the creator - with a click, the worm can infect and suck all the information of all infected computers at once or clog the global computer network.

more here: http://eblog.cari.com.my/?73746/viewspace-15913.html



[ Last edited by  oobi at 30-3-2009 09:58 ]
Reply

Use magic Report

Post time 30-3-2009 12:12 PM | Show all posts
xde bnda la..

jgn risau sgt..
Reply

Use magic Report

Post time 30-3-2009 07:42 PM | Show all posts
salah tu....... mana leh tak online..

sentimen macam tu salah..

sepatutnya bersedia untuk hadapinya.. bukan elakkan diri daripadanya

kalau korang tak kena 1 april, tak semestinya 2 april virus tu akan terus pufffffffffffffffffffffffffffffff..
hilang.. tak de nye.. so backup ur data, persiapkan sistem untuk hadapinya.. tu paling baik.

ingat.. security is not a product, it's a process
Reply

Use magic Report

Follow Us
Post time 30-3-2009 07:43 PM | Show all posts
p/s: korang tak rasa ni mungkin akan jadi april fool hoax joke terbesar di dunia
Reply

Use magic Report

Post time 30-3-2009 08:46 PM | Show all posts
kalau tak online how to get the latest definition update???
Meha reccomendkan install sekali Threatfire
http://www.threatfire.com/
So double up guards and update slagi boleh(sekali time tu la microsoft punya WGA notification berleluasa )
Reply

Use magic Report


ADVERTISEMENT


 Author| Post time 30-3-2009 11:06 PM | Show all posts

Balas #8 mehacomp_91\ catat

ini 2 in 1 ke...anti virus ngan spyware remover sekalik
Reply

Use magic Report

Post time 31-3-2009 09:22 AM | Show all posts

Reply #9 ratu_cinta's post

install je sebagai secondary layer untuk system security
Reply

Use magic Report

Post time 31-3-2009 11:36 AM | Show all posts
NOTA MAKLUMAN GCERT BIL. 2/2009
PADA 25 MAC 2009
  

    KETERANGAN ANCAMAN
Nama dan Jenis Ancaman     Worm W32.downadup.KK [Trend Micro]
    W32.Downadup.C                     [Symantec]
    Worm:W32/Downadup.DY        [F-Secure]
    Win32/Conficker.C                    [Computer Associates]
    Mal/Conficker-B                        [Sophos]
Tarikh Dikesan    18 Mac 2009
Bilangan Agensi Terlibat    Semua agensi yang menggunakan sistem pengoperasian Microsoft Windows
    Sistem Pengoperasian/Aplikasi Berisiko
     
        *  Ms Windows 95
        *  Ms Windows 98
        *  Ms Windows NT
        *  Ms Windows Me
        *  Ms Windows XP
        *  Ms Windows 2000
        *  Ms Windows Vista
        *  Ms Windows Server 2003
    Kaedah Serangan
     
    i.    Worm W32.downadup.KK merebak dengan mengeksploitasi kelemahan pada sistem pengoperasian Microsoft Windows yang tidak dilengkapi dengan tampalan keselamatan (security patch) MS08-067.
    ii.  Worm ini dipercayai akan mula aktif pada 1 April 2009. Ia akan menyerang komputer dengan cara:
    a.      Connects to various time servers to determine the current date and time.
    b.      Register itself as a system service to ensure auto execution every startup.
    c.      Deletes a registry key to prevent system startup in safe mode.
    d.      Terminates security-related processes (i.e. procexp, regmon, autoruns, gmer etc.)
    e.      Blocks access to security and antivirus websites.
    f.        Generates 50,000 malicious URLs and attempts to connect to around 500 random generated URLs at a time.
      
    Kesan Serangan
     
    i.    Worm ini boleh menyebabkan serangan/pencerobohan yang lebih parah ke atas komputer/server memandangkan ia mampu mematikan ciri-ciri keselamatan pada komputer/server.  
    Cadangan Tindakan Pengukuhan
     
    i.    Memasang patch MS08-067 dari Microsoft (http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx).
    ii.  Memastikan perisian antivirus dilengkapi dengan virus signature yang terkini dan jalankan full system scan.
    iii. Memastikan semua storan mudah alih (removable storage) di imbas terlebih dahulu sebelum digunakan; cth: USB drive, mobile hard disk, dll.
    iv. Memastikan HIPS dan perlindungan buffer overflow diaktifkan.
    v.  Memastikan imbasan masa sebenar (real-time scanning) dan imbasan ‘on write’ diaktifkan
    Maklumat Lanjut
     
    1. http://www.trendmicro.com/vinfo/ ... M_DOWNAD.KK&VSect=T
    2. http://www.sophos.com/security/a ... /malconfickerb.html
    3. http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx
    4. http://gcert.mampu.gov.my/index.php?option=com_content&task=view&id=487&Itemid=1

Ini virus yang dimaksudkan maklumat ini forward oleh Government Computer Emergency Response Team (GCERT) kepada semua agensi kerajaan seluruh malaysia.
Reply

Use magic Report

Post time 31-3-2009 05:41 PM | Show all posts


hebat... macam y2k dulu

K tak rasa dia akan lepas 1 hb... sebab semua orang dah sedia.. tapi mungkin 3hb ke.. kalau betul2 dia lepas 1 hb lepas tu banyak mangsa.... memang staillllllllllll la
Reply

Use magic Report

Post time 1-4-2009 01:09 PM | Show all posts
Reply

Use magic Report

Post time 20-4-2009 03:23 PM | Show all posts
yuppp virus downadup nie mmg hebat...setakat nie kami menggunakan Fix Downadup tools from antivirus Symantec Endpoint Protection... http://www.symantec.com/content/en/us/global/removal_tool/threat_writeups/D.exe
Reply

Use magic Report

Post time 20-4-2009 11:30 PM | Show all posts
jom..
mari kita tengok samaada PC kita kena conficker ke tak..
http://www.confickerworkinggroup ... est/cfeyechart.html
Reply

Use magic Report

Post time 21-4-2009 01:05 AM | Show all posts
conficker ni dia attack security hole pada os kan..

selalu la update os anda utk mengelakkan diserang conficker..
Reply

Use magic Report


ADVERTISEMENT


Post time 28-4-2009 12:37 PM | Show all posts
opis aku kena gak...
hampeh...
1. aku remove conficker pakai microsoft removal tools.. quick scan and delete semua.
2. install patches dari Microsoft .. vulnerability yg digunakan conficker (nama asal .. "configuration fuc ker") untuk masuk windows.
3. Full scan windows pakai antivirus. (opis pakai CA etrust)


aku rasa no 2 yg agak penting.. untuk defend virus.

sapa yg berminat bole baca technical analysis conficker variant c kat sini..
http://mtc.sri.com/Conficker/addendumC/

[ Last edited by  testas at 28-4-2009 12:40 ]
Reply

Use magic Report

You have to log in before you can reply Login | Register

Points Rules

 

ADVERTISEMENT



 

ADVERTISEMENT


 


ADVERTISEMENT
Follow Us

ADVERTISEMENT


Mobile|Archiver|Mobile*default|About Us|CariDotMy

6-1-2025 08:58 PM GMT+8 , Processed in 0.124612 second(s), 30 queries , Gzip On, Redis On.

Powered by Discuz! X3.4

Copyright © 2001-2021, Tencent Cloud.

Quick Reply To Top Return to the list