DISCOVER Magazine. Science, Technology and The Future
Current Issue
Subscribe Today »
  • Renew
  • Give a Gift
  • Archives
  • Customer Service
  • Facebook
  • Twitter
  • Newsletter
  • Health & Medicine
  • Mind & Brain
  • Technology
  • Space
  • Human Origins
  • Living World
  • Environment
  • Physics & Math
  • Video
  • Photos
  • Podcast
  • RSS
80beats
« Scientists Glean Secrets of Flight From Birds, Bats, and Bugs
In a Sensory Hack, What You Touch Affects What You See »

Mystery of the Conficker Worm Continues: Does It Want to Scam or Spam?

computer networkThe computer worm known as Conficker that has infected millions of PCs around the world stirred yesterday and raised new fears that the hackers behind the worm are gearing up to cause mischief, but experts say their intentions are still mysterious. The worm went active on April 1, but it didn’t seek to disrupt networks and didn’t harness infected computers to send out waves of spam. The lack of a clear business model for Conficker … had confounded researchers and analysts. In fact, it was one of the reasons why there was so much attention paid to the worm’s new communications scheme activation date: Everyone wondered what it would do on April 1 to monetize the effort spent collecting a massive botnet [Computerworld].

Over the past two days infected machines have begun to download additional software, but so far the results still haven’t been as dire as many experts originally predicted. According to varying reports, some computers are just preparing to run a small-scale scam on their users, while others have adopted an existing email worm that can steal passwords and send spam. The latter function may be more troublesome, some experts say. The consensus within the computer security industry is that although there are now some indications that Conficker’s authors are intent on building a giant spam system, there is no hard evidence. “This is just Step 5 in a thousand-step chess match,” [The New York Times], said security expert Vincent Weafer.

Some experts monitoring Conficker infected computers say the worm is downloading and installing fake security software. Often called “scareware” for its habit of trying to spook users with bogus infection warnings — then dunning them with endless pop-ups until they fork over up to $50 to buy the useless program — such rogue antivirus software has become a huge business [Computerworld].

Other observers detected the spam program that had been placed via Conficker’s built-in peer-to-peer (P2P) communications capability, which allows large groupings of infected systems to hand off software updates and instructions being pushed out by the worm authors…. “There are still some unknowns here, but things are becoming a lot more clear, and it certainly seems they’re making a move here to finally monetize all this effort” [Washington Post blog], says Paul Ferguson, a researcher with the security company Trend Micro.

Related Content:
80beats: “Conficker” Computer Worm Wakes Up, but Fails to Sow Chaos
Cosmic Variance: The C Variant covered the Conficker worm before activation
80beats: Electrical Espionage: Spies Hack Into the U.S. Power Grid
80beats: Is the U.S. Government Losing the Battle Against Hackers?
80beats: Computer Virus Travels Into Orbit, Lands on the Space Station
80beats: Russian Invasion Included the First Real Use of “Cyber Warfare”

Image: iStockphoto

Share

April 10th, 2009 8:55 AM Tags: computer virus, computers, hackers, weapons & security
by Eliza Strickland in Technology | 4 comments | RSS feed | Trackback >

4 Responses to “Mystery of the Conficker Worm Continues: Does It Want to Scam or Spam?”

  1. 1.   William Says:
    April 10th, 2009 at 12:39 pm

    Very useful article and valuable information is available i.e., about the mystery behind getting the PC’s infected.

  2. 2.   Nick Says:
    April 10th, 2009 at 12:51 pm

    Why doesn’t someone just reverse engineer it and then start spreading a copy that hijacks the old confickers to spread it’s own cure (kinda like we’ve hijacked AIDS virii in attempts to attack cancer)? We could turn the P2P botnet inside out into a P2P antivirus/spyware botnet…. I mean, why not?

  3. 3.   FILTHpig Says:
    April 10th, 2009 at 1:37 pm

    Why not? Because the anti-virus companies are the one’s releasing the virus! Conspiracy!!!

  4. 4.   A woman Says:
    April 10th, 2009 at 4:57 pm

    a conspiracy theorist to the heart you are filth………… your comment is not even being listened to . go back to you basement and hide.

Leave a Reply





    • 80beats Daily Newsletter

      Enter your email address:

    • Twitter

      Follow @discovermag
    • Facebook

    • RSS Feed

      The RSS feed for 80beats is here RSS.

    • Sci News in 140

      rockahn.net
    • on 80beats

      Recent Comments

      Comments

      • amphiox on Study: Americas + Europe + Asia Will Form Amasia, a Supercontinent in the Arctic
      • JD on Zebra Stripes: Fashion Statement or Fly Repellant?
      • Old Geezer on Zebra Stripes: Fashion Statement or Fly Repellant?
      • Bryan Bremner on Zebra Stripes: Fashion Statement or Fly Repellant?
      • Tony Mach on What’s Causing the Bizarre Plague of Tics in Upstate New York?
      • Mike on The Engineer Who Has “Saved More Lives Than Any Single Person in the History of Aviation”
      RSS Recent Posts

      Posts

      • Zebra Stripes: Fashion Statement or Fly Repellant?
      • Study: Americas + Europe + Asia Will Form Amasia, a Supercontinent in the Arctic
      • Video: Coral’s Dramatic Yet Slo-Mo Emergence From the Sea Floor
      • It’s a Shark-Eating Shark–Eating–Shark World
      • Solar Panels Sometimes Pit Global Warming Against Local Ecosystems
      Categories

      Categories

      • Environment
      • Feature
      • Health & Medicine
      • Human Origins
      • Journal Roundup
      • Living World
      • Mind & Brain
      • News Roundup
      • Photo Gallery
      • Physics & Math
      • Space
      • Technology
      • Top Posts
      • Uncategorized
      Archives

      Archives

      • February 2012
      • January 2012
      • December 2011
      • November 2011
      • October 2011
      • September 2011
      • August 2011
      • July 2011
      • June 2011
      • May 2011
      • April 2011
      • March 2011
      • February 2011
      • January 2011
      • December 2010
      • November 2010
      • October 2010
      • September 2010
      • August 2010
      • July 2010
      • June 2010
      • May 2010
      • April 2010
      • March 2010
      • February 2010
      • January 2010
      • December 2009
      • November 2009
      • October 2009
      • September 2009
      • August 2009
      • July 2009
      • June 2009
      • May 2009
      • April 2009
      • March 2009
      • February 2009
      • January 2009
      • December 2008
      • November 2008
      • October 2008
      • September 2008
      • August 2008
      • July 2008
      • June 2008
      • May 2008
    • About 80beats

      80beats is DISCOVER's news aggregator, weaving together the choicest tidbits from the best articles on the day's most compelling topics.

      80beats is written by Veronique Greenwood and Valerie Ross. This team darts through each day's science news faster than the ruby-throated hummingbird that beats its wings 80 times per second. Send ideas, tips, suggestions, and complaints to [azeeberg at discovermagazine dot com].



  • Kalmbach Publishing Co.

    Copyright © 2012, Kalmbach Publishing Co.

    Privacy - Terms - Reader Services - Subscribe Today - Advertise - About Us