Distribution of Conficker worm decreases

Posted: January 30th, 2009 | Tags: , , , |

By estimations of the anti-virus companies, the quantity of infections with the sensational net worm actively travelling on the Internet and corporate networks of last 2-3 weeks, has reached 10 million computers. However the last some days speed of distribution of this harmful code has considerably decreased. We will remind that various variants of worm Conficker (Downadup) extend, maintaining vulnerability MS08-067 in Windows operating systems.
Officially the patch eliminating vulnerability has been released in October, however it has not prevented a worm to extend successfully, using alternative variants of delivery - removable mass storages, e-mail etc. All infected infected with Conficker, unite in a huge bot-network, working in interests of hackers and their customers. F-Secure marks that the size of bot-network Conficker (Downadup) by January, 23rd has reached 10 million computers, thus that else one week ago the quantity of the infected computers did not exceed 2,4 million Anti-virus analysts are assured that the problem of cleaning up of the infected computers from tracks Conficker represents the nontrivial task, considering epidemic scales. Experts F-Secure say that the number in 10 million infected computers has been received by them on the basis of an estimation of the analysis of activity of new bots-networks. Complexity in an estimation of quantity of the amazed computers also is covered that activity Conficker permanently starts with different domains, and the code of a worm extends in geometrical progression. “Anyway, today it is possible to assert that speed of distribution of a worm was decelerated, to that testify a number of factors. Now it is necessary to solve how to spend global desinfection”, - the adviser for security Shon Sullivan speaks. As he said, distribution of Conficker substantially varies from the country to the country. Most strongly computers have suffered from this worm in the CIS, China and Brazil. This area concerns 41 % of ip-addresses on which attempts of further distribution Conficker are detected.

Related posts


Leave a Reply