April 1st and Conficker: Nothing Happened?
The analysts at ESET have carefully watched the commencement of activity of the worm Win32/Conficker.X. The worm has in its body an embedded command to trigger its activity on April 1st. This command has thus been activated, prompting the worm to start communication with a randomly-generated number of domains out of the estimated daily total of 50, 000 where the worm checks for instructions.
Even if the worm’s far reaching damaging impact on the Internet infrastructure did not materialize, it can be expected that Conficker’s authors will start using the botnet for activities usually associated with this kind of venture – i.e. using the botnet to spread spam or other kinds of computer malware on a mass scale. According to Juraj Malcho, the Head of ESET Virus Laboratory "It is hard to imagine that the worm's authors would not take advantage of such a meticulously constructed botnet.” His view concurs with that expressed by David Harley Director of Malware Intelligence of the US branch of ESET in his blogpost , "it would be bizarre to put this much effort into a project and then not try to make some profit out of it."
Despite the fact that Conficker is presently a sort of a superstar on the virus scene, it is in reality just one of millions of computer threats lurking in cyberspace spread through email and increasingly via exchangeable media. By informing about the spread of the worm’s several variants, antivirus vendors have done their share of raising awareness of the importance of computer security in combating emerging malware.
The truth is there are several simple steps to be taken to increase the level of protection from malware. The minute the user deactivats the Windows autorun function, he or she is protected from thousands of computer threats, including Conficker.
Also, if the user sets a strong password (using a combination of lower and upper case letters, coupled with numbers), he/she has contributed to improving computer security and is protected from many a malware attack, including Conficker.
If he/she takes the time to update (patch) Windows operating system and on top of that installs a suitable security software – antivirus, or a more complex security suite (avoiding the various so-called 'rogue antivirus' knock-offs), he or she extends the level of protection even further and is shielded literally from hundreds of thousands of infiltrations, including Conficker.
Founded in 1992, ESET is a global provider of security solutions for enterprises and consumers. ESET is a market leader in proactive detection of malware. Thanks to its ThreatSense.Net® technology, it is able to collect data on a volunteer basis from users all around the world, alowing it to react flexibly to emerging threats. It‘s ESET NOD32 Antivirus has been ranked by the independent AV-Comparatives testing lab as the best antivirus product worldwide (2006, 2007). ESET has offices in Bratislava, SK; Buenos Aires, AR; San Diego, USA; and has an extensive partner network in 160 countries. In 2008, ESET has opened a new research center in Krakow, Poland. ESET was named to Deloitte’s Technology Fast 500 one of the fastest-growing technology companies in the region of Europe, Middle East and Africa.