After 1 Year, Conficker Infects 7M Computers
alphadogg writes "The Conficker worm has passed a dubious milestone. It has now infected more than 7 million computers, security experts estimate. On Thursday, researchers at the volunteer-run Shadowserver Foundation logged computers from more than 7 million unique IP addresses, all infected by the known variants of Conficker. They have been able to keep track of Conficker infections by cracking the algorithm the worm uses to look for instructions on the Internet and placing their own 'sinkhole' servers on the Internet domains it is programmed to visit. Conficker has several ways of receiving instructions, so the bad guys have still been able to control PCs, but the sinkhole servers give researchers a good idea how many machines are infected."
Gratz
Conficker is notable because it isn't a total piece of script kiddie crap. It uses asymmetric crypto to only accept instructions from the creator. It also patches the hole on the way in, so you couldn't even reinfect Conficked boxes with a cleaner.
Everyone should read the original page, particularly the Introduction and section explaining how to interpret their population numbers.
Here's a relevant quote:
"The daily numbers should represent the potential maximum level of the infection, but in previous test cases usually prove to be much less than that maximum. So, take the range of 25% to 75% of the values that we display as the possible infection population and you will be close to the real value."
So the people actually providing these numbers are really saying that the current number of infections is likely to be between 1,750,000 and 5,250,000.
Is there a way for the researchers to use the sinkhole to clean the worm?
Probably not.
But YOU CAN HELP:
Just Click the the CornFlicker Eye Chart to test your machine:
http://www.confickerworkinggroup.org/infection_test/cfeyechart.html
You can read about it in the link posted in TFA.
Sig Battery depleted. Reverting to safe mode.
Conficker broke 7 Million Infections...
Microsoft just released Windows 7...
Has anyone ever seen Conficker and Windows 7 in the same room together?