Gadgetell | Tech News, Reviews, and Interesting Things

Subscribe to our content for free: (?)
Get our Daily Email
Sections: Computers, Security

Conficker updates and drops code on infected computers

by Heather Wood on Apr 9, 2009 at 01:19 PM
Conficker

After weeks of computers users waiting for Conficker to strike, the worm has finally become active again today.  Trend Micro has released a statement that the Conficker worm has updated and dropped code onto the computers that are infected.  It is expected that this code will be used to steal data from a PC.

Trend Micro has also said that the code is heavily encrypted and an analysis has yet to be reached.  Additional reports have said that the updated version of Conficker is attempting to connect to several popular websites in order to check for connectivity.  These sites include eBay, AOL, and MySpace.

Trend Micro researchers discovered this update when they become aware of a new file in the Windows Temp folder and a sizable encrypted TCP response from a Conficker P2P IP node in Asia.  These changes indicate that the Conficker authors are attempting to control more infected PCs, but the update may not happen to each computer immediately.

Read: [PC World]

Keep up with the latest gadget goodness! - Subscribe to our feed


Comments
  • Kalamazoo said:

    The research you are performing to find the confiker is appreciable thing.

  • Page 1 of 1 Comment Pages
Join the Discussion

Name: *

Email: *

Location (Links to Google Maps):

URL:

Enter Your Comment Below...

* Required fields

Remember my information?

Notify me of follow-up comments?

Submit the word you see below:


Special Features