|
saya dapat info dari kengkawan... mereka kata 1 april better jgn online banyak virus akan dilepaskan...maybe sempena april fool kot.......
semalam pulak aku terima masej dari AVAST anti virus yg aku pakai le ni...menyatakan 1 april banyak malware ke spyware...so masej tu remind kat user suruh update apa yg patut, windows / micrososft security pun kena update ....so apa pendapat anda sekalian...... |
|
|
|
|
|
|
|
April 1st is a date when creators of malware are most occupied. This year First of April will be no exception also. There are currently a lot of reports in the media about potential new virus threats and speculation about the potential impact of new viruses such as the Conficker worm
Avast, creator of antivirus software announced today that they are ready for 1 April. They advice that you should make sure that your antivirus program and virus definitions are completely up-to-date and make sure that you have the latest Windows security updates, with that actions the risk is very small and there is no need to be unduly concerned.
Avast officials, about security of Avast on First of April also said:
Whenever you switch on your computer, make sure that avast! is actually running. Some viruses are designed to specifically target antivirus programs and to turn them off, however avast! contains strong self-defense which is designed to prevent this. If avast! is running, you should see the normal blue a-ball in the bottom right corner of your screen. If it is switched off, it will contain a circle with a red line through it
So, be prepared no matter is it avast your antivirus program or some other, the concept is the same: make sure that your antivirus program and virus definitions are completely up-to-date and make sure that you have the latest Windows security updates. |
|
|
|
|
|
|
|
alamak.. abih aku nak wat kerja camner kalo tak online. kang email tak masuk.. |
|
|
|
|
|
|
|
Reply #1 ratu_cinta's post
it's a worm/malware called conficker. it's been in the work since nov 2008. computer securities said that it's already infected about 10 mil computers and most of them resided in corporate network. this worm is like a spy. it's currently waiting for an instruction from the creator - with a click, the worm can infect and suck all the information of all infected computers at once or clog the global computer network.
more here: http://eblog.cari.com.my/?73746/viewspace-15913.html
[ Last edited by oobi at 30-3-2009 09:58 ] |
|
|
|
|
|
|
|
xde bnda la..
jgn risau sgt.. |
|
|
|
|
|
|
|
salah tu....... mana leh tak online..
sentimen macam tu salah..
sepatutnya bersedia untuk hadapinya.. bukan elakkan diri daripadanya
kalau korang tak kena 1 april, tak semestinya 2 april virus tu akan terus pufffffffffffffffffffffffffffffff..
hilang.. tak de nye.. so backup ur data, persiapkan sistem untuk hadapinya.. tu paling baik.
ingat.. security is not a product, it's a process |
|
|
|
|
|
|
|
p/s: korang tak rasa ni mungkin akan jadi april fool hoax joke terbesar di dunia |
|
|
|
|
|
|
|
kalau tak online how to get the latest definition update???
Meha reccomendkan install sekali Threatfire
http://www.threatfire.com/
So double up guards and update slagi boleh(sekali time tu la microsoft punya WGA notification berleluasa ) |
|
|
|
|
|
|
|
Balas #8 mehacomp_91\ catat
ini 2 in 1 ke...anti virus ngan spyware remover sekalik |
|
|
|
|
|
|
|
Reply #9 ratu_cinta's post
install je sebagai secondary layer untuk system security |
|
|
|
|
|
|
|
NOTA MAKLUMAN GCERT BIL. 2/2009
PADA 25 MAC 2009
KETERANGAN ANCAMAN
Nama dan Jenis Ancaman Worm W32.downadup.KK [Trend Micro]
W32.Downadup.C [Symantec]
Worm:W32/Downadup.DY [F-Secure]
Win32/Conficker.C [Computer Associates]
Mal/Conficker-B [Sophos]
Tarikh Dikesan 18 Mac 2009
Bilangan Agensi Terlibat Semua agensi yang menggunakan sistem pengoperasian Microsoft Windows
Sistem Pengoperasian/Aplikasi Berisiko
* Ms Windows 95
* Ms Windows 98
* Ms Windows NT
* Ms Windows Me
* Ms Windows XP
* Ms Windows 2000
* Ms Windows Vista
* Ms Windows Server 2003
Kaedah Serangan
i. Worm W32.downadup.KK merebak dengan mengeksploitasi kelemahan pada sistem pengoperasian Microsoft Windows yang tidak dilengkapi dengan tampalan keselamatan (security patch) MS08-067.
ii. Worm ini dipercayai akan mula aktif pada 1 April 2009. Ia akan menyerang komputer dengan cara:
a. Connects to various time servers to determine the current date and time.
b. Register itself as a system service to ensure auto execution every startup.
c. Deletes a registry key to prevent system startup in safe mode.
d. Terminates security-related processes (i.e. procexp, regmon, autoruns, gmer etc.)
e. Blocks access to security and antivirus websites.
f. Generates 50,000 malicious URLs and attempts to connect to around 500 random generated URLs at a time.
Kesan Serangan
i. Worm ini boleh menyebabkan serangan/pencerobohan yang lebih parah ke atas komputer/server memandangkan ia mampu mematikan ciri-ciri keselamatan pada komputer/server.
Cadangan Tindakan Pengukuhan
i. Memasang patch MS08-067 dari Microsoft (http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx).
ii. Memastikan perisian antivirus dilengkapi dengan virus signature yang terkini dan jalankan full system scan.
iii. Memastikan semua storan mudah alih (removable storage) di imbas terlebih dahulu sebelum digunakan; cth: USB drive, mobile hard disk, dll.
iv. Memastikan HIPS dan perlindungan buffer overflow diaktifkan.
v. Memastikan imbasan masa sebenar (real-time scanning) dan imbasan ‘on write’ diaktifkan
Maklumat Lanjut
1. http://www.trendmicro.com/vinfo/ ... M_DOWNAD.KK&VSect=T
2. http://www.sophos.com/security/a ... /malconfickerb.html
3. http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx
4. http://gcert.mampu.gov.my/index.php?option=com_content&task=view&id=487&Itemid=1
Ini virus yang dimaksudkan maklumat ini forward oleh Government Computer Emergency Response Team (GCERT) kepada semua agensi kerajaan seluruh malaysia. |
|
|
|
|
|
|
|
conficker ni dia attack security hole pada os kan..
selalu la update os anda utk mengelakkan diserang conficker.. |
|
|
|
|
|
|
|
opis aku kena gak...
hampeh...
1. aku remove conficker pakai microsoft removal tools.. quick scan and delete semua.
2. install patches dari Microsoft .. vulnerability yg digunakan conficker (nama asal .. "configuration fuc ker") untuk masuk windows.
3. Full scan windows pakai antivirus. (opis pakai CA etrust)
aku rasa no 2 yg agak penting.. untuk defend virus.
sapa yg berminat bole baca technical analysis conficker variant c kat sini..
http://mtc.sri.com/Conficker/addendumC/
[ Last edited by testas at 28-4-2009 12:40 ] |
|
|
|
|
|
|
| |
|