Jump to content
dalegg

April 1st Virus?

 Share

46 posts in this topic

Recommended Posts

Here is a simple tool that will scan and remove this if you have it:

Symantec Tool

If you can't download this, you probably are infected. Just downloaded on another computer and copy it over (via some other media)

My Advice is usually based on "Worst Case Scenario" and what is written in the rules/laws/instructions. That is the way I roll... -Protect your Status - file before your I-94 expires.

WARNING: Phrases in this post may sound meaner than they were intended to be. Read the Adjudicator's Field Manual from USCIS

Link to comment
Share on other sites

  • Replies 45
  • Created
  • Last Reply

Top Posters In This Topic

Top Posters In This Topic

Filed: Citizen (pnd) Country: Brazil
Timeline
Here is a simple tool that will scan and remove this if you have it:

Symantec Tool

If you can't download this, you probably are infected. Just downloaded on another computer and copy it over (via some other media)

Now I'm really confused. My computer failed to download the link you have posted above (it said that I don't have administrative rights to download that, which doesn't make sense since I am the only "admin" on this computer). However, I have since gone to the Microsoft website and checked for any new updates and looked at my past updates from Microsoft. My computer has successfully downloaded all of the Microsoft updates (The last update on my list is the Important one on March 22 labeled Malicious Software Removal Tool and that was successful). There was one new update on the website when I went and my cpmputer uploaded that successfully as well.

Do I need to be worried?

N-400 Naturalization Process

June 25, 2013 --Qualified for Citizenship!

October 12, 2017 --Electronically filed

October 13, 2017 --NOA1

October 31, 2017 --Biometrics Appointment -ATL

ROC

April 5, 2012 --Sent I-751 to Vermont Service Center

May 21, 2012 --Biometric Appointment at ATL office

December 12, 2012 --10 year Green Card in hand

DCF Process

October 10, 2009 --Married in São Paulo

January 14, 2010 --Filed I-130 at São Paulo Consulate for DCF

May 17, 2010 --VISA IN HAND!

June 24, 2010 --POE in Atlanta

Link to comment
Share on other sites

Filed: Citizen (pnd) Country: Cambodia
Timeline

Worm attack chaos fails to strike

The chaos predicted by some as the Conficker worm updates itself have so far failed to materialise.

There had been concerns that the worm could trigger poisoned machines to access personal files, send spam, clog networks or crash sites.

Many of the infected machines are based in Asia where there have been no reports of unusual PC behaviour.

Conficker is believed to have infected up to 15 million computers to date.

Those monitoring the progress of the worm as 1 April dawned around the globe said there was no evidence it was doing anything other than modifying itself to be harder to exterminate.

The hackers behind the worm, which effectively have all infected machines under their control, have yet to give the virus any specific orders.

But security experts warned that there was no room for complacency.

"We are going to be on high alert for a long time. Come 2 April we will still be watching while most people will have moved their focus elsewhere," said Vincent Weafer, vice president of security response at anti-virus firm Symantec.

He added: "We believe the software is geared towards making money. The characteristic of this type of worm is to keep it slow and low, keep it under the radar to slowly maximise profits over the long term."

Origins

Conficker, also known as Downadup or Kido, first appeared last November. The worm is self-replicating and has attacked a vulnerability in machines using Microsoft's Windows operating system, the software that runs most computers.

It can infect machines via a net connection or by hiding on USB memory drives used to ferry data from one computer to another. Once in a computer, it digs deeps, setting up defences making it hard to extract.

Among those affected by the virus have been the House of Commons and the defence forces of the UK, Germany and France.

The reason for the hype and the concern around Conficker is that 1 April was the day the worm was set to change the way it updates itself, moving to a system that is much harder to combat.

Five months ago a consortium of web security firms banded together to form the Conficker Working Group, to learn more about the worm and to try to stop it.

Last weekend the team located what they call a "fingerprint" or "signature" for the virus that means they can detect how an infected machine can be identified on a network much quicker than previously.

Security researcher Dan Kaminsky, a member of the group and director of penetration testing at IOActive, told the BBC this was a major breakthrough.

"We know these bad guys are in places they really shouldn't be. With this new trick it is much easier to find them. It means we can say, OK, I don't know what will happen but I can tell you 10,000 systems are under the control of the bad guys and here they are."

Lucrative

While no-one in the industry is 100% sure of the aim of Conficker, they are positive the people behind it are more concerned about making money than causing mayhem.

A recent report by security firm Finjan claimed that cybercrime is as lucrative a business as drug trafficking.

Its Cybercrime Intelligence Report found that a single hacker could make as much as $10,800 (£7,300) a day, which the company extrapolated to $3.9m (£2.6m) a year.

Finjan's chief technology officer Yuval Ben-Itzhak said: "Cybercrime today is a very, very big business and those behind Conficker have spent a lot of money organising, writing code and securing these machines so they will be looking for a return soon.

"This type of cybercrime activity is here to stay and will grow because there is so much money involved and its hard to get caught."

Help identify

In February Microsoft put up a bounty of $250,000 to anyone who could help identify those behind Conficker. It also issued patches to address the vulnerability.

Industry experts say consumers and companies should regularly update their security software and apply Windows updates as well as protect computers and files with strong passwords.

Symantec has issued a free trial version of its products that will detect and remove the worm.

VeriSign, one of the guardians of the networked world, believes these bugs exist because the general level of security is just not high enough.

"This is a testament to making consumer products useable and user friendly, which means security has to be relaxed a little," said VeriSign's chief technology officer Ken Silva.

"If all the security measures were deployed that should be deployed, they would become too annoying and too difficult for most consumers."

Story from BBC NEWS:

http://news.bbc.co.uk/go/pr/fr/-/2/hi/technology/7976099.stm

mooninitessomeonesetusupp6.jpg

Link to comment
Share on other sites

Filed: Country: United Kingdom
Timeline
Worm attack chaos fails to strike

The chaos predicted by some as the Conficker worm updates itself have so far failed to materialise.

Doesn't mean it won't happen, just that the whole april fools day thing ws a rumour

Edited by fozzie

K-1 Visa Journey

04/20/2006 - file our I-129f.

09/14/2006 - US Embassy interview. Ask Lauren to marry me again, just to make sure. Says Yes. Phew!

10/02/2006 - Fly to New York, EAD at JFK, I'm in!!

10/14/2006 - Married! The perfect wedding day.

AOS Journey

10/23/2006 - AOS and EAD filed

05/29/2007 - RFE (lost medical)

08/02/2007 - RFE received back at CSC

08/10/2007 - Card Production ordered

08/17/2007 - Green Card Arrives

Removing Conditions

05/08/2009 - I-751 Mailed

05/13/2009 - NOA1

06/12/2009 - Biometrics Appointment

09/24/2009 - Approved (twice)

10/10/2009 - Card Production Ordered

10/13/2009 - Card Production Ordered (Again?)

10/19/2009 - Green Card Received (Dated 10/13/19)

Link to comment
Share on other sites

Filed: Other Country: United Kingdom
Timeline

Personally I think the news stories about these viruses overstate the threat. This one probably only became news because of the hook about how it supposedly activates on April 1st.

From what I read there are 4 variants of this virus - the latest one (variant 'D') is spread by USB thumb drives. Most all of them are easily removed, from what I understand.

Link to comment
Share on other sites

Filed: Country: United Kingdom
Timeline
Personally I think the news stories about these viruses overstate the threat. This one probably only became news because of the hook about how it supposedly activates on April 1st.

From what I read there are 4 variants of this virus - the latest one (variant 'D') is spread by USB thumb drives. Most all of them are easily removed, from what I understand.

Like i stated earlier this has caused havoc in the UK. It is fixable but the sheer number of computers that are affected is making the process of eradicating it difficult. You get rid of it but that does not mean you will not get it again.

K-1 Visa Journey

04/20/2006 - file our I-129f.

09/14/2006 - US Embassy interview. Ask Lauren to marry me again, just to make sure. Says Yes. Phew!

10/02/2006 - Fly to New York, EAD at JFK, I'm in!!

10/14/2006 - Married! The perfect wedding day.

AOS Journey

10/23/2006 - AOS and EAD filed

05/29/2007 - RFE (lost medical)

08/02/2007 - RFE received back at CSC

08/10/2007 - Card Production ordered

08/17/2007 - Green Card Arrives

Removing Conditions

05/08/2009 - I-751 Mailed

05/13/2009 - NOA1

06/12/2009 - Biometrics Appointment

09/24/2009 - Approved (twice)

10/10/2009 - Card Production Ordered

10/13/2009 - Card Production Ordered (Again?)

10/19/2009 - Green Card Received (Dated 10/13/19)

Link to comment
Share on other sites

Here is a simple tool that will scan and remove this if you have it:

Symantec Tool

If you can't download this, you probably are infected. Just downloaded on another computer and copy it over (via some other media)

Now I'm really confused. My computer failed to download the link you have posted above (it said that I don't have administrative rights to download that, which doesn't make sense since I am the only "admin" on this computer). However, I have since gone to the Microsoft website and checked for any new updates and looked at my past updates from Microsoft. My computer has successfully downloaded all of the Microsoft updates (The last update on my list is the Important one on March 22 labeled Malicious Software Removal Tool and that was successful). There was one new update on the website when I went and my cpmputer uploaded that successfully as well.

Do I need to be worried?

What operating system are you running? Vista or Xp?

My Advice is usually based on "Worst Case Scenario" and what is written in the rules/laws/instructions. That is the way I roll... -Protect your Status - file before your I-94 expires.

WARNING: Phrases in this post may sound meaner than they were intended to be. Read the Adjudicator's Field Manual from USCIS

Link to comment
Share on other sites

Personally I think the news stories about these viruses overstate the threat. This one probably only became news because of the hook about how it supposedly activates on April 1st.

From what I read there are 4 variants of this virus - the latest one (variant 'D') is spread by USB thumb drives. Most all of them are easily removed, from what I understand.

They are easily removed, but you have to stop the vectors (like net shares, autorun activations, updated virus/OS updates).

The variants are being updated by the authors to outwit the Cabal that is trying to stop the spread of this.

I am glad the Cabal took it to the public and it was widely reported, makes people pay attention.

I still have users that will get an email, telling them to delete the jdbgmgr.exe file, because it's icon is a "teddybear" and it's a dangerous virus......

My Advice is usually based on "Worst Case Scenario" and what is written in the rules/laws/instructions. That is the way I roll... -Protect your Status - file before your I-94 expires.

WARNING: Phrases in this post may sound meaner than they were intended to be. Read the Adjudicator's Field Manual from USCIS

Link to comment
Share on other sites

Filed: Citizen (apr) Country: Brazil
Timeline
I still have users that will get an email, telling them to delete the jdbgmgr.exe file, because it's icon is a "teddybear" and it's a dangerous virus......

:rofl: that's an old one!

* ~ * Charles * ~ *
 

I carry a gun because a cop is too heavy.

 

USE THE REPORT BUTTON INSTEAD OF MESSAGING A MODERATOR!

Link to comment
Share on other sites

Filed: Citizen (pnd) Country: Brazil
Timeline
[

What operating system are you running? Vista or Xp?

Vista

N-400 Naturalization Process

June 25, 2013 --Qualified for Citizenship!

October 12, 2017 --Electronically filed

October 13, 2017 --NOA1

October 31, 2017 --Biometrics Appointment -ATL

ROC

April 5, 2012 --Sent I-751 to Vermont Service Center

May 21, 2012 --Biometric Appointment at ATL office

December 12, 2012 --10 year Green Card in hand

DCF Process

October 10, 2009 --Married in São Paulo

January 14, 2010 --Filed I-130 at São Paulo Consulate for DCF

May 17, 2010 --VISA IN HAND!

June 24, 2010 --POE in Atlanta

Link to comment
Share on other sites

Filed: Country: Philippines
Timeline
[

What operating system are you running? Vista or Xp?

Vista

Click on the hypertext below: (web-based scanner)

I ran it last night (on Vista also) and it found 3 malicious items. I think the scan takes a few hours, but worth the time. Run it on your computer ASAP and just wait until it's done before using it again. :)

.....

Microsoft offers a web-based scanner (note that some users have reported it crashed their machines; I had no trouble with it), so you might try one of these downloadable options instead: Symantec's Conficker (aka Downadup) tool, Trend Micro's Cleanup Engine, or Malwarebytes. Conficker may prevent your machine from accessing any of these websites, so you may have to download these tools from a known non-infected computer if you need them. Follow the instructions given on each site to run them successfully. (Also note: None of these tools should harm your computer if you don't have Conficker.)

Link to comment
Share on other sites

Filed: Country: Vietnam
Timeline

My computer is totally infected by I managed to extract a copy of the worm from my Tech Guy who spent 5 hours trying to get it to reboot.

If you want to see what it does to your computer Click Here

20-July -03 Meet Nicole

17-May -04 Divorce Final. I-129F submitted to USCIS

02-July -04 NOA1

30-Aug -04 NOA2 (Approved)

13-Sept-04 NVC to HCMC

08-Oc t -04 Pack 3 received and sent

15-Dec -04 Pack 4 received.

24-Jan-05 Interview----------------Passed

28-Feb-05 Visa Issued

06-Mar-05 ----Nicole is here!!EVERYBODY DANCE!

10-Mar-05 --US Marriage

01-Nov-05 -AOS complete

14-Nov-07 -10 year green card approved

12-Mar-09 Citizenship Oath Montebello, CA

May '04- Mar '09! The 5 year journey is complete!

Link to comment
Share on other sites

Filed: Country: Philippines
Timeline
My computer is totally infected by I managed to extract a copy of the worm from my Tech Guy who spent 5 hours trying to get it to reboot.

If you want to see what it does to your computer Click Here

Son of a...

Edited by Mister Fancypants
Link to comment
Share on other sites

 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
- Back to Top -

Important Disclaimer: Please read carefully the Visajourney.com Terms of Service. If you do not agree to the Terms of Service you should not access or view any page (including this page) on VisaJourney.com. Answers and comments provided on Visajourney.com Forums are general information, and are not intended to substitute for informed professional medical, psychiatric, psychological, tax, legal, investment, accounting, or other professional advice. Visajourney.com does not endorse, and expressly disclaims liability for any product, manufacturer, distributor, service or service provider mentioned or any opinion expressed in answers or comments. VisaJourney.com does not condone immigration fraud in any way, shape or manner. VisaJourney.com recommends that if any member or user knows directly of someone involved in fraudulent or illegal activity, that they report such activity directly to the Department of Homeland Security, Immigration and Customs Enforcement. You can contact ICE via email at Immigration.Reply@dhs.gov or you can telephone ICE at 1-866-347-2423. All reported threads/posts containing reference to immigration fraud or illegal activities will be removed from this board. If you feel that you have found inappropriate content, please let us know by contacting us here with a url link to that content. Thank you.
×
×
  • Create New...