Aces High Bulletin Board

General Forums => The O' Club => Topic started by: 1pLUs44 on March 31, 2009, 09:10:10 PM

Title: April Fools Virus
Post by: 1pLUs44 on March 31, 2009, 09:10:10 PM
Turn off your computers at midnight, make sure you're completely updated.

It's apparently pretty nasty, so, hope you already didn't get it. (Hopefully, Firefox did it's part pretty well.)  :pray

I'm updating AVG, and downloading the windows update right now.
Title: Re: April Fools Virus
Post by: StokesAk on March 31, 2009, 10:03:48 PM
April Fools.  :noid
Title: Re: April Fools Virus
Post by: SPKmes on March 31, 2009, 10:10:16 PM
Don't worry. I live your future and the day passes with no such event.
Title: Re: April Fools Virus
Post by: JunkyII on April 01, 2009, 12:08:39 AM
Don't worry. I live your future and the day passes with no such event.
Yea im in korea and nothing has happened, i think you need to lay of the paodi
Title: Re: April Fools Virus
Post by: WilldCrd on April 01, 2009, 12:28:35 AM
The early reports from other parts of the world claimed that the worm didn't really cause any issues. It does have a key logger tho.
It was also reported that one way to know your infected is that you can get the microsoft update site and cant update you anti-virus thru the web.
The only workaround is to have the update emailed to you or transfer it from a removable media.
Seems its more of a inconvenience than a major threat.....but who knows tomarrow we may wake up back in the dark ages if you beleive some of the doomsayers regarding this virus  :rofl.

The only skeery kinda thing is that nobody really knows WTF this thing actually does. only that its dormant till april and some website or soemthing on the web activates it, "they" dunno what though  :huh
Title: Re: April Fools Virus
Post by: Nilsen on April 01, 2009, 12:32:12 AM
Are we all gonna die now like we were supposed to with the millenium bug ?  :confused:
Title: Re: April Fools Virus
Post by: trigger2 on April 01, 2009, 12:55:12 AM
Well, even so, the confiker's a right nasty bug, to the point where microsoft's got a 250,000 USD reward out for whoever has info leading to the arrest of whoever made it... ;) But I think all will be well...
Title: Re: April Fools Virus
Post by: Dadsguns on April 01, 2009, 08:24:57 AM
I would turn myself in for that kind of money......  :lol
Title: Re: April Fools Virus
Post by: Denholm on April 01, 2009, 08:51:44 AM
Too bad Microsoft doesn't get smart and install the virus on one of their computers. In doing this they can sniff the packets of the computer which is infected. Once the virus contacts the website for instructions on how to operate, remove the virus and look at the packet log. Within that packet log is information of when the virus contacted the website's server, the IP of the server, and what the virus was looking for. With that information Microsoft could contact the owner of the server's IP and ask for information regarding recent domain registrations. Now you have your list of suspects.
Title: Re: April Fools Virus
Post by: Mickey1992 on April 01, 2009, 09:00:49 AM
Once the virus contacts the website for instructions on how to operate, remove the virus and look at the packet log. Within that packet log is information of when the virus contacted the website's server, the IP of the server, and what the virus was looking for.

The first two versions of the virus pinged 250 unique IPs a day looking for updates or instructions.  The 3rd version pings 50,000 unique domains a day.  It's a fairly advanced virus.

https://www.honeynet.org/files/KYE-Conficker.pdf

The majority of infections are in Asia.  It is estimated that more than 85% of the copies of Windows installed in Asia are counterfeit, and they therefore can not get security updates so they are more vulnerable to attacks.
Title: Re: April Fools Virus
Post by: Denholm on April 01, 2009, 09:04:45 AM
Well, I know that. However only one IP will respond with instructions. The packet sniffer will pick that up thus giving you the IP of where the instructions came from. Yes, it's time consuming to sift through the information the packet sniffer picked up. However if you want to catch the guy, that would be the easiest way to do it.
Title: Re: April Fools Virus
Post by: Enker on April 01, 2009, 02:55:36 PM
Now, what if instead of one IP address giving instructions, multiple IP addresses only have parts of the instructions? Or is that not possible yet?
Title: Re: April Fools Virus
Post by: Tr1gg22 on April 01, 2009, 03:07:44 PM
Yea im in korea and nothing has happened, i think you need to lay of the paodi
:rofl
Title: Re: April Fools Virus
Post by: StokesAk on April 01, 2009, 03:09:30 PM
 :noid You have been infected!!!!1
Title: Re: April Fools Virus
Post by: trax1 on April 01, 2009, 03:17:16 PM
Well, I know that. However only one IP will respond with instructions. The packet sniffer will pick that up thus giving you the IP of where the instructions came from. Yes, it's time consuming to sift through the information the packet sniffer picked up. However if you want to catch the guy, that would be the easiest way to do it.
The thing is that the way the creator of the virus is giving it instructions is he breaks into one of those 50,000 domain names that the virus goes to to get it's instructions, now there's no way to monitor all 50,000 domains, someone who creates a virus thats this good is more then capable of staying undetected, hell Microsoft is offering a $250,000 reward for information leading to the arrest of the virus's creator, I doubt they'd offer that large a reward if it was that easy to trace him.
Title: Re: April Fools Virus
Post by: Fulmar on April 01, 2009, 03:27:36 PM
Oh hai Skynet
(http://www.whatheck.com/uploaded_images/skynet-terminator-727080.jpg)
Title: Re: April Fools Virus
Post by: Masherbrum on April 01, 2009, 03:28:56 PM
 :devil
Title: Re: April Fools Virus
Post by: Nilsen on April 01, 2009, 03:31:56 PM
April 1. is here and im still alive. As usual i havent gotten this virus either even if i dont have any AV software running. Never gotten a virus and im still wondering where people find them :)
Title: Re: April Fools Virus
Post by: StokesAk on April 01, 2009, 03:44:36 PM
my computer just blew up.
Title: Re: April Fools Virus
Post by: Lukanian-7 on April 01, 2009, 03:52:15 PM
As I giggled at the feeble attempts of the Conficker Virus I heard my Computer rattle.
A worm jumped out and bit off my leg at the thighs :D
Title: Re: April Fools Virus
Post by: lefty320 on April 01, 2009, 04:57:37 PM
my computer just blew up.

And you're still typing?
Title: Re: April Fools Virus
Post by: Lye-El on April 01, 2009, 05:46:35 PM
Turn off your computers at midnight, make sure you're completely updated.

It's apparently pretty nasty, so, hope you already didn't get it. (Hopefully, Firefox did it's part pretty well.)  :pray

I'm updating AVG, and downloading the windows update right now.

Did the sky fall and I missed it?
Title: Re: April Fools Virus
Post by: Ack-Ack on April 01, 2009, 07:09:37 PM
What would be funny if it was all just an April Fool's Joke.  Would probably go down as the best April Fool's Prank ever.


ack-ack
Title: Re: April Fools Virus
Post by: Fishu on April 01, 2009, 09:59:57 PM
What would be funny if it was all just an April Fool's Joke.  Would probably go down as the best April Fool's Prank ever.

And as the most costly one ever I figure.
Title: Re: April Fools Virus
Post by: texasmom on April 01, 2009, 10:30:29 PM
hahaha. Cute avatar Fishu. I like it.  :aok

My kids run around with helmets on all the time. It's a real hoot. :)

I reckon that to a civilian it looks as peculiar as a tin-foil hat. Oh well, they're happy with it. :)
Title: Re: April Fools Virus
Post by: trigger2 on April 02, 2009, 12:14:50 AM
Not as bad as I thought... Got outta 6th/7th period to be a bounty hunter. ;) One of our campuses had EVERY one of it's computers infected (I'm guessing some kid actually brought it on a flashdrive, once it hit the server... well, kaploot)... So, had a fun afternoon of plug in flashdrive, open AV software installer, go to next computer, start them all...