Microsoft warns customers of a new worm
Posted: November 27th, 2008 | Tags: Malware, Security, Virus |The Microsoft Corp. warns about appearance of the new harmful program maintaining vulnerability in operating systems of Windows the patch for which has been released last month. About Microsoft building all is quiet.
The worm who has received name Conficker extends mainly in corporate networks so far, also hundreds cases of infection of computers of ordinary Internet users however are already reported. Conficker uses a hole which description contains in the bulletin of safety of Microsoft MS08-067. The problem is linked by that at processing of the inquiries of the remote call of procedures generated in special way (Remote Procedure Call) in Server service of program platforms of Microsoft there is an error allowing malefactors to capture a complete control over the computer of a victim.
Harmful program Conficker opens a random port between 1024 and 10000 and works as a web server. When the worm penetrates the computer, it masks itself as a JPG-file, and then writes itself to a disk under the pretext of library DLL. It is remarkable that, having got on the computer of a victim, Conficker installs a patch for vulnerability MS08-067. However in this case the worm cares at all of the owner of the computer — simply thus Conficker closes an opening for other harmful programs which can prevent its operation. The majority of messages on infection of computers with program Conficker while arrives from territory of the United States. Besides, the worm is noticed and in a number of other countries, including in Germany, Spain, France, Italy, Japan, Brazil and China.






















Leave a Reply