Slashdot Mirror


Australian ALDIs Sell Conficker-Infected Hard Drives

mukimu writes "Supermarket ALDI has been selling malware-infected hard drives in Australian stores, prompting the country's Computer Emergency Response Team (AusCERT) to issue a security alert to users on behalf of the government. ALDI has had to issue a recall on the products, which contained components of Conficker, and remove the product from its stores. AusCERT noted that the worm should be picked up by antivirus given it is extremely old and past its heyday when it infected Australian Banks and transport infrastructure."

75 comments

  1. Damned German chains... by lewko · · Score: 3, Funny

    And whatever you do, don't mention the war.

    --
    Do you or your partner snore? - Visit www.snoring.com.au
    1. Re:Damned German chains... by Anonymous Coward · · Score: 1, Funny

      And whatever you do, don't mention the war.

      You started it.

    2. Re:Damned German chains... by Anonymous Coward · · Score: 0, Troll

      And whatever you do, don't mention the war.

      You started it.

      No ve didn't!

    3. Re:Damned German chains... by Gadget_Guy · · Score: 0

      And whatever you do, don't mention the war.

      You started it.

      lewko mentioned it once, but I think he got away with it.

    4. Re:Damned German chains... by Anonymous Coward · · Score: 1, Funny

      And whatever you do, don't mention the war.

      You started it.

      No ve didn't!

      Yes you did! You invaded Poland!

    5. Re:Damned German chains... by Wolfling1 · · Score: 0

      I cant believe this god modded 'troll'... some /. folks are complete heathens.

      No mod points, but +1 funny anyway...

    6. Re:Damned German chains... by Anonymous Coward · · Score: 0

      yes, some /. folks are complete heathens - pathetic, childish heathens who can't even make an original joke. that's why god modded it troll

    7. Re:Damned German chains... by Anonymous Coward · · Score: 0

      /. once had some intelligence. Don't mention that either.

    8. Re:Damned German chains... by tehcyder · · Score: 1

      well played

      --
      To have a right to do a thing is not at all the same as to be right in doing it
    9. Re:Damned German chains... by Anonymous Coward · · Score: 0

      This joke has been repeated so many times, it's as funny as a knock knock joke or a rickroll.

      Either you live under a rock or have a mastubatory OCD.

      -1 tedious

    10. Re:Damned German chains... by cheekyboy · · Score: 1

      people still said that in 1997 , whats new.

      --
      Liberty freedom are no1, not dicks in suits.
    11. Re:Damned German chains... by Anonymous Coward · · Score: 0

      It doesn't make it less true.

      Older /. : Newer /. :: /. : Reddit & Digg

      Basically, the further along in time, the worse /. gets, which will sadly still be better than Reddit and Digg.

    12. Re:Damned German chains... by 0100010001010011 · · Score: 1

      We were invited. Punch vas served. Check vit Poland.

    13. Re:Damned German chains... by lewko · · Score: 1

      They just have a German sense of humour.

      --
      Do you or your partner snore? - Visit www.snoring.com.au
    14. Re:Damned German chains... by dave420 · · Score: 1

      As Mark Twain once said: "a German joke is no laughing matter".

    15. Re:Damned German chains... by Anonymous Coward · · Score: 0

      He was just pissed off that he was too stupid to learn the language :)

  2. IMBECILE! by Cant+use+a+slash+wtf · · Score: 0

    Do not speak like that about the overlord! You shall be smited by the low, low prices yet surprisingly good quality of the Aldi!

    1. Re:IMBECILE! by 1s44c · · Score: 1

      Do not speak like that about the overlord! You shall be smited by the low, low prices yet surprisingly good quality of the Aldi!

      ALDI does look like a cheap dump but you are right about some of the stuff. They have some very cheap good quality things.

    2. Re:IMBECILE! by jeffmeden · · Score: 1

      The suprising thing (to me at least) is that the Albrecht brothers (owners of ALDI) are two of the richest men in the world. You would think that having low prices and high quality would lead to thin margins and not much profit left over, but they have really done well with that company. They don't move anywhere near the volume of WalMart worldwide, and yet still park their yachts right next to the Waltons.

    3. Re:IMBECILE! by Dexter+Herbivore · · Score: 1

      Economy of Scale wins in the end...

  3. stay smart by rbrausse · · Score: 1

    the homepage is funny, if you click on the big fat "Stay Smart Online" logo on the upper left you get a message box with the content "You are now leaving the Stay Smart Online Alert Service website." sure, technically correct (stay smart alert service is different to stay smart), but nonetheless irritating...

    and the advisories list only Apple updates :)

  4. cool story by Anonymous Coward · · Score: 0

    , bro.

  5. I smell a discount! by jwijnands · · Score: 3, Interesting

    I'd take it for half price and clean it myself. After cleaning most of a rather large windows estate of conficker I think I still remember how to do it.

    1. Re:I smell a discount! by 1s44c · · Score: 1

      shred -z -n 0 /dev/$disk
      or
      dd if=/dev/zero of=/dev/$disk bs=$((1024 * 1024))

      Less fun than thermite but you get to reuse the disk.

    2. Re:I smell a discount! by maxwell+demon · · Score: 2

      Shouldn't a simple reformat (i.e. rewriting the file system structures) already take care of it? OK, to be completely sure, also rewrite the MBR (there might be a boot sector virus on the disk as well). But I don't see the need to overwrite everything on the disk. It's not private or secret data you want to hide from others. You don't need to erase every trace of it; you just need to make sure the computer won't execute it.

      --
      The Tao of math: The numbers you can count are not the real numbers.
    3. Re:I smell a discount! by sakdoctor · · Score: 4, Funny

      I'd mark up the price of clean drives as "Virus free", (ala DRM free), and sell the standard drive as "Free virus".

    4. Re:I smell a discount! by Anonymous Coward · · Score: 0

      That was exactly my first thought.

      Aaaand I was gonna rant asking how they could have been so pighead lazy as to not do it themselves, but I realized that would cut into the vital profits so they weren't pighead lazy, they were pighead arrogant.

    5. Re:I smell a discount! by sFurbo · · Score: 1

      What, arrogant? Estimating that having employees unpack the drives, clean them, and pack them again cost more than new drives is arrogant? How?

    6. Re:I smell a discount! by Anonymous Coward · · Score: 0

      What, arrogant? Estimating that having employees unpack the drives, clean them, and pack them again cost more than new drives is arrogant? How?

      By not telling their consumers and assuming it would get a pass? By hoping that no one would notice and selling it without warning?

      Now, please. If you believe that someone selling tainted goods mixed in with regular goods without indicating, prior to being caught, that there was a taint and is continuing to sell said product on their website according to the linked article, isn't arrogance, then I'd like to know what you believe it is. Bone headed stupidity? Insolent greed? All of these are results of believing they wouldn't get caught, that they were gambling against their consumers being able to figure this out. That they *arrogantly* believed they could get away with this because, I dunno, I guess they're special somehow?

      This isn't arrogance? What is it then?

    7. Re:I smell a discount! by Anonymous Coward · · Score: 0

      Given your experience with conficker you must also be extremely old.

    8. Re:I smell a discount! by Anonymous Coward · · Score: 0

      Nuke it. Nuke it from space!!

    9. Re:I smell a discount! by Anonymous Coward · · Score: 0

      Uh, they maybe didn't know that the disks were infected? Hanlon's razor, dude.

    10. Re:I smell a discount! by JamesP · · Score: 1

      A fresh install of Linux should do the trick.

      --
      how long until /. fixes commenting on Chrome?
  6. Feature! by Antarius · · Score: 1

    It will be repackaged and marketed as a 5-in-1 device now.

  7. Re:mod do3n by 1s44c · · Score: 0

    Funny as goatse links are they are getting a bit old.

    Can we go back to rickrolling? That's fun for all the family.

  8. Are they selling used hard drives? by cbope · · Score: 1

    How in the hell does a brand-new out-of-the-box hard drive contain a virus? You would think the hard drive manufacturers can easily prevent this from happening during manufacturing, so I have to assume ALDI are selling used drives? Is this common practice in Oz?

    I've NEVER seen used anything-computer sold at a supermarket. Brand-new in-the-box USB hard drives, maybe, but not internal drives. And I certainly would not buy one if the package has been opened. Perhaps they are returns that have been infected by the first purchaser?

    1. Re:Are they selling used hard drives? by rbrausse · · Score: 2

      new hardware with pre-installed malware is rare but not unheard of. a short search shows external drives, photo frames and laptops.

    2. Re:Are they selling used hard drives? by hairyfeet · · Score: 2

      Actually I can easily explain it. You see China has one of the highest rates of Windows piracy bar none and I have no doubt those machines on the floor putting the little free crap they always seem to put on drives (like backup software, or those little app launcher thingies) are running "Windows XP Corporate SP2 Reloaded Edition" and haven't seen a single patch since they downloaded the .ISO.

      So all it takes is someone playing an infected CD, surfing on the thing, or even being paid by some malware group to plug in an infected drive and the Windows is pwned. After that any drive plugged into it gets infected and voila! hell it wouldn't surprise me if they made an image to flash the drives and the machine doing the imaging has more viruses than a Bangkok whore on a Saturday night. stupid is as stupid does I suppose.

      --
      ACs don't waste your time replying, your posts are never seen by me.
    3. Re:Are they selling used hard drives? by Smask · · Score: 1

      Some new USB hard drives comes preformatted or at least have a small partition loaded with drivers and/or backup software.

    4. Re:Are they selling used hard drives? by Joce640k · · Score: 1

      How in the hell does a brand-new out-of-the-box hard drive contain a virus?

      I'm guessing they connect them all to a PC at the the manufacturing plant to see if they're working/not before they ship them out. If a PC gets infected then every drive you connect to it will get a copy of the virus.

      --
      No sig today...
    5. Re:Are they selling used hard drives? by petermgreen · · Score: 1

      How in the hell does a brand-new out-of-the-box hard drive contain a virus? You would think the hard drive manufacturers can easily prevent this from happening during manufacturing,

      I don't think the problem was the hard drive manufacturer. Hard drives are made by a small handful of large well known companies, they usually ship without a partition table and I suspect they are tested by plugging them into special test gear.

      The product in question was a "Fission External 4-in-1 Hard Drive, DVD, USB and Card Reader". "Fission" are presumablly some smallish company (my googling attempts find no evidence of their existance beyond this news story) most likely located in the far east (where labour is cheap) who take the raw hard drives, load them up with an image containing a parittion table, filesystem structures and any software they want to bundle and then install them in their product.

      Since ALDI claim this was "limited to a small number of the devices" I suspect the infection came during final testing when someone plugged them into an infected machine for final testing. Afaict pirate software with updates disabled is very common in the far east.

      --
      note: i'm known as plugwash most places but i screwd up registering that here somehow in the past and now can't register
    6. Re:Are they selling used hard drives? by BetaDays · · Score: 0

      I know it's amazing they may not be used. But at least they are not the only one that has problems like this http://news.cnet.com/8301-1009_3-10137032-83.html Circuit City and Wal-Mart and who knows who else has had problems.

      --
      Paul: Father... father, the sleeper has awakened! - Dune
    7. Re:Are they selling used hard drives? by JSBiff · · Score: 1

      "...has more viruses than a Bangkok whore on a Saturday night."

      Yeah, you should definitely always visit them on Monday - they're much cleaner then.

    8. Re:Are they selling used hard drives? by Anonymous Coward · · Score: 0

      Well maybe not for viruses specifically... but cephalexin is a helluva drug.

  9. We are the Borg. by Dr+Herbert+West · · Score: 1

    Resistance is futile.

    But seriously, viruses want to live too, right? Even though they're old, and no one wants them anymore... don't viruses deserve a chance to dance, and sing, and try to stay in the gene(?) pool just as long as they can? Haters gotta hate I guess.

    I used to buy Froot Rings by the bushel at an aldi over on Sheridan somewhere in Chicago. Never thought they'd stoop so low as to sell viruses.

  10. past it's use by date by Anonymous Coward · · Score: 0

    lol, this is indicative of our ALDI store, mediocre stuff that is out of date...

  11. It's Friday in Australia. by Anonymous Coward · · Score: 0

    That means the spamming of Slashdot by the Aussie-lurvin' "editors" begins.

    Australian Non-story after Australian non-story for yet another weekend.

    Hooray.

    1. Re:It's Friday in Australia. by MichaelSmith · · Score: 1

      Aussie here. I take your point, but a shop selling infected hard disks sounds like news for nerds to me.

  12. Aldi have other stuff as well by David+at+Eeyore · · Score: 1

    I just saw that item in a recent catalog - decided I didn't really want yet another combo reader USB hard disk thingy and passed on it. Just as well.. Aldi have good deals from time to time on cheap tools, both hand and electric. They appear to be well made for the price (in China, of course). Guess they have to satisfy a tough German home market. I got a 5 inch angle grinder a year or so ago, it has been a good performer.

    --
    "Never underestimate the power of very stupid people in large groups" seen on someone's blog...
    1. Re:Aldi have other stuff as well by Joce640k · · Score: 1

      I've got LIDL, not ALDI but it's pretty much the same thing. They do seem to take a lot of care to only sell good stuff (good for the price, that is...).

      I got the monitor I'm looking at right now there. It's full 1080p and cost about the same as the brand-name 720p monitor next to it. I don't see any difference at all in image quality (in fact, the graphics for the pop-up menus are *identical* so I suspect they have the exact same internals...)

      I wouldn't buy an angle grinder there for use on a building site but for something that's only going to get used a few times a year at home, no problem.

      --
      No sig today...
    2. Re:Aldi have other stuff as well by operagost · · Score: 1

      The problem I have with Aldi in the US is that they'll advertise something like a 5000W portable gas generator for $350, then only send two to the stores so that unless you camp out in front of the store with a kubotan to fed off your opponents (some call them "shoppers"), you ain't gettin' one.

      --

      Gamingmuseum.com: Give your 3D accelerator a rest.
    3. Re:Aldi have other stuff as well by tlhIngan · · Score: 1

      The problem I have with Aldi in the US is that they'll advertise something like a 5000W portable gas generator for $350, then only send two to the stores so that unless you camp out in front of the store with a kubotan to fed off your opponents (some call them "shoppers"), you ain't gettin' one.

      A lot of stores do that - they usually call them "door crashers". And in the US, it oddly usually happens on the Friday that follows the 4th Thursday of November for whatever reason. The prevalence of online sales though has dampened it somewhat, so you usually see websites come to a crashing halt the moment the clock ticks from 11:59:59 to midnight (at whatever timezone they're using).

  13. Could be worse ... by Anonymous Coward · · Score: 0

    could have been Stuxnet. .... Go US & Israel.

  14. Re:mod do3n by lennier1 · · Score: 0

    great, now i have to think of that "russian rickroll" guy again!

  15. Why not get off your arse ... by dbIII · · Score: 1, Insightful

    Why not get off your arse and submit some stories from where you are instead?

    1. Re:Why not get off your arse ... by tehcyder · · Score: 0

      Why not get off your arse and submit some stories from where you are instead?

      He's American, and too busy working eighteen hour days being a genius and keeping the world economy free from the hands of commies to have time to post on slashdot. Oh, wait...

      --
      To have a right to do a thing is not at all the same as to be right in doing it
  16. Makes you wonder... by ibsteve2u · · Score: 1

    If one of the "Big Box" retailers has moved into the natural successor to "competition" when monopolization has become pervasive: War.

    --
    Orwell: "In a Time of Universal Deceit, telling the Truth is a Revolutionary Act"
  17. and then conficker2 starts running about by Anonymous Coward · · Score: 0

    undetected....

  18. Supermarket? by Scutter · · Score: 1

    We're just going to gloss over the fact that a grocery store is selling hard drives (and that people actually go there to buy them)? I'm the only one to comment on that?

    Is ALDI different in Australia than it is here? I have to assume it's more like a department store (similar to Walmart) than just a grocery store.

    --

    "Tell me doctor, with all of your defenses, are there any provisions for an attack by killer bees?"
    1. Re:Supermarket? by Anonymous Coward · · Score: 0

      ALDI is by far not a department store but it always has a limited assortment of promotion nonfood items for sale, rotated on a weekly basis.

    2. Re:Supermarket? by shoehornjob · · Score: 1

      Yeah that was the first thing that came into my mind when I read the title (ummm...wtf). Maybe they were selling it as a "feature". Go figure.

      --
      "We are just a war away from Amerikastan. When god vs god the undoing of man." Dave Mustaine
    3. Re:Supermarket? by petermgreen · · Score: 1

      We're just going to gloss over the fact that a grocery store is selling hard drives (and that people actually go there to buy them)? I'm the only one to comment on that?

      Note that we aren't talking bare hard drives here we are talking about a "Fission External 4-in-1 Hard Drive, DVD, USB and Card Reader ".

      Is ALDI different in Australia than it is here? I have to assume it's more like a department store (similar to Walmart) than just a grocery store.

      ALDI at least in the UK seem to be a store selling a combination of discount groceries and discount "other stuff". What exactly the other stuff is varies but it's not unusual for their to be some computer stuff in the mix. Mind you most larger grocery stores in the UK sell some non-food stuff.

      --
      note: i'm known as plugwash most places but i screwd up registering that here somehow in the past and now can't register
    4. Re:Supermarket? by Anonymous Coward · · Score: 0

      more like a disposal store. They sell a small range of items at a low price. Some items are made to ALDI specs, like chocolate made with soy and not milk.

    5. Re:Supermarket? by adeft · · Score: 1

      I've seen full on laptops for sale at my Aldi's. I'm located in PA.

    6. Re:Supermarket? by Hatta · · Score: 1

      ALDI will sell anything it can get at ridiculously low prices. You have to take the ridiculously low quality with it.

      --
      Give me Classic Slashdot or give me death!
  19. Wait. by trum4n · · Score: 1

    I thought Conflicker turned out to be a complete joke. What does it actually do?

    1. Re:Wait. by Killjoy_NL · · Score: 1

      It spreads through the network and any kind of usb storage, phones, ipods, usbsticks, screws up some security stuff, hides in multiple places and since it is botsoftware, your pc can be used for all kinds of nefarious ends.
      Quite annoying to remove from all the PC's in a building I can assure you.

      --
      This is the sig that says NI (again)
    2. Re:Wait. by trum4n · · Score: 1

      Ah, thanks. All i really heard was the panic before the active date. AKA the news made shit up to get ratings again.

  20. If you buy your hard drives at a supermarket.... by Anonymous Coward · · Score: 0

    I dont feel bad for you

  21. Is it just me... by kenh · · Score: 1

    But a supermarket selling hard drives?

    --
    Ken
  22. Re:If you buy your hard drives at a supermarket... by Dexter+Herbivore · · Score: 1

    If you don't shop around for the best deal without being snobby about where it comes from, I feel sorry for you. Yes I know that in this case it had a negative attahced, but Conficker isn't exactly the worst threat in the world... not to mention that reputable hardware manufacturers have been hit by similar problems.

  23. Not surprising by Anonymous Coward · · Score: 0

    Not to mention that they are selling Dole bananas which do not come from Australia but are advertised as a product of Australia and they are STILL charging $12.99/kg. The U.S. imports bananas via Dole and I can't imagine they are charging roughly 7USD for them. This is one of the more shady stores around.