luo1124 发表于 2009-4-14 20:21:58

蠕蟲變種會自殺

<P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; TEXT-ALIGN: center; mso-layout-grid-align: none" align=center><FONT size=3><B style="mso-bidi-font-weight: normal"><SPAN style="COLOR: #333333; FONT-FAMILY: 新細明體; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">蠕蟲變種會自殺</SPAN></B><B style="mso-bidi-font-weight: normal"><SPAN lang=EN-US style="COLOR: #333333; FONT-FAMILY: Arial"><?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /><o:p></o:p></SPAN></B></FONT></P>
<P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; TEXT-ALIGN: center; mso-layout-grid-align: none" align=center><FONT size=3><B style="mso-bidi-font-weight: normal"><SPAN style="COLOR: #333333; FONT-FAMILY: 新細明體; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">悄悄地來又悄悄地走、危險性更高</SPAN></B><B style="mso-bidi-font-weight: normal"><SPAN lang=EN-US style="COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></B></FONT></P>
<P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; TEXT-ALIGN: center" align=center><SPAN style="FONT-SIZE: 9.5pt; COLOR: #333333; FONT-FAMILY: 新細明體; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">更新日期</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9.5pt; COLOR: #333333; FONT-FAMILY: Arial">:<Q>2009/04/14 20:10<o:p></o:p></SPAN></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>史上最強電腦病毒</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Conficker</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>蠕蟲靜雖未在愚人節鬧事作怪,不過,資安業者近日發現,蠕蟲新變種</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Conficker.e</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>已開始活動,並與垃圾郵件傀儡程式聯手現身,駭客還要求該病毒在今年</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">5</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>月</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">3</SPAN><FONT face=新細明體><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">日停止執行,展現「自我移除」功能,悄悄地來又悄悄地走,假性「自殺」情形讓受害電腦的使用者對中毒更是渾然不覺。</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></FONT></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p>&nbsp;</o:p></SPAN></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>資安業者推測,這可能是蠕蟲</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Conficker</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>開始銷售其僵屍網路資源,也許垃圾郵件傀儡程式</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">(W32.Waledac)</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>與蠕蟲本來就是一夥的,或者是</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Waledac</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>租用</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Conficker</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>僵屍網路資源使用,以擴大垃圾郵件業務;此外,蠕蟲也下載了另一個名為</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Win32.SpywareProtect2009.s</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>的偽造防毒軟體,宣稱偵測到電腦系統遭受感染,並要求使用者支付</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">49.95</SPAN><FONT face=新細明體><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">美元費用,以移除實際上不存在的安全威脅來另外牟利。</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></FONT></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p>&nbsp;</o:p></SPAN></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>賽門鐵克安全應變中心並指出,</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">4</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>月</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">8</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>日,其誘補系統中發現新的變種樣本「</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Downadup.E</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>」,透過</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">P2P(peer-to-peer)</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>的方式與已遭</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Downadup.C</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>入侵的電腦通訊,嘗試更新</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Downadup.C</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>,並下載目前最活躍的垃圾郵件</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Bot</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>傀儡程式</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">W32.Waledac</SPAN><FONT face=新細明體><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">,竊取受害者機密資訊,將被入侵電腦轉為垃圾郵件殭屍電腦,建立系統後門以便遠端遙控。</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></FONT></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p>&nbsp;</o:p></SPAN></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>另外,在這個新樣本中,該變種出現一種前所未見的「自我移除」功能,設定於</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">5</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>月</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">3</SPAN><FONT face=新細明體><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">日自動將本身自受感染的主機上移除。</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></FONT></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p>&nbsp;</o:p></SPAN></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>資安專家莊添發表示,這種情形令人擔心,因為一般使用者一旦被植入這個程式後,除了個資被竊外,它又會在</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">5</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>月</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">3</SPAN><FONT face=新細明體><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">日前把自己移除掉,很多人可能因為這隻病毒悄悄來又悄悄走,到最後個人資料被蒐集走了,但是在機器上也沒有任何異常行為,可能完全沒有意識到自己的電腦曾經中毒過。</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></FONT></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p>&nbsp;</o:p></SPAN></P>
<P style="BACKGROUND: white; MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial"><FONT face=新細明體>專家建議,民眾保持下載並安裝</FONT></SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial">Windows</SPAN><FONT face=新細明體><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">系統最新的安全更新程式,以降低病毒入侵作業系統的可能性,並更新到最新的病毒定義檔。</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: red; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">同時在瀏覽可疑網站、電子郵件及其附件時提高警覺,切勿輕易下載任何可疑程式</SPAN><SPAN style="FONT-SIZE: 9pt; COLOR: #333333; mso-ascii-font-family: Arial; mso-hansi-font-family: Arial; mso-bidi-font-family: Arial">。</SPAN><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p></o:p></SPAN></FONT></P>
<P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #333333; FONT-FAMILY: Arial"><o:p>&nbsp;</o:p></SPAN></P>
<P class=MsoNormal style="MARGIN: 0cm 0cm 0pt; LAYOUT-GRID-MODE: char; mso-layout-grid-align: none"><SPAN lang=EN-US style="FONT-SIZE: 9pt"><o:p><FONT face="Times New Roman" color=#000000>&nbsp;</FONT></o:p></SPAN></P></Q>
页: [1]
查看完整版本: 蠕蟲變種會自殺