Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security

March 7th, 2012, 13:39 GMT · By

“Internet Shutdown” Postponed by Court to July 9, 2012

SHARE:

Adjust text size:

Heatmap of Operation Ghost Click infected machine locations
Enlarge picture
Good news for the owners of the millions of computing devices affected by the malicious DNSChanger Trojan. The FBI obtained a court order to postpone the termination of the compromised DNS servers from March 8 to July 9, 2012, giving ISPs and companies 120 days to dispose of the malware.

For those who aren’t familiar with the DNSChanger malware, InfoSec Island reveals that it infects computers, altering their DNS settings so that every time the user wants to visit a website they would be pointed to the rogue DNS servers that controlled the botnet.

These, in turn, would ensure that the unsuspecting victim is taken to a domain that promotes fake products.

In November 2011, as part of Operation Ghost Click, the FBI managed to identify the cybercriminals that controlled the rogue DNS servers located in Estonia, New York and Chicago, and terminated the entire operation.

At the time, Trend Micro made an advisory to help users with infected devices. Senior Security Researcher Paul Ferguson even made some important recommendations to internauts in an interview we had with him at the time.

However, the cleansing process turned out to be more difficult than everyone imagined. Because the infected devices connected to the Internet through the DNS servers operated by the crooks, shutting them down would mean that millions of users worldwide would be left without access to the Web.

Internet Service Providers (ISPs) and companies, half of which in the Fortune 500 list, have struggled to clean up all traces of the malware, but since they didn’t succeed, the FBI considered shutting down the DNS servers on March 8 to contain the DNSChanger infection.

According to Brian Krebs, a United States District Court of the Southern District of New York appointed the Internet Systems Consortium (ICS) to “install, monitor, and administer” replacement DNS servers that would allow victims to identify infections while avoiding service termination.

The ICS will manage the servers for a period of 120 days, giving the affected parties until July 9 to clean up everything.

In the meantime, individuals and companies can continue to clean the compromised machines. Regular users can take a look at the DNS Changer “Eye Chart” to see if their computers are infected, and businesses can turn to one of the organizations part of the DNSChanger Working Group.


6,108 hits · 2 comments
Link to this article · Print article · Send to friend

MUST-READ RELATED ARTICLES:


FBI Shuts Down International Cybercriminal Operation That Made 4 Million Victims

Softpedia Exclusive Interview: Paul Ferguson, Trend Micro Key Liaison with FBI in Op GhostClick

Anonymous Denies Targeting the DNS Root Servers

Experts: Anonymous Attacks on Root DNS Servers Not Plausible

Anonymous Wants Internet Blackout, Targets 13 "Root" DNS Servers

READER COMMENTS:


Comment #1 by: lily on 22 Apr 2012, 16:00 UTC reply to this comment

I understand about bringing down hackers. But, even when the american people do what is expected so internet is not lost. Hackers will figure out another way to get in. This is just more money being spent that will not stop hackers.


Comment #2 by: Concerned on 24 Apr 2012, 19:01 UTC reply to this comment

I think we have come to a point (In Country Status) that has put it's eggs...all in a dismal basket. (Commerse-wise) Shutting down the "crooks" who could not give a rat's * ....shuts down, exactly, what is projected!!!
COMMERSE!!!
Better with draw all your money from it's Internet Dependent Sources, because when a "shut-down" happens...the Banks, the Direct Depositor's, and the Information related to such....will not exist!!! Even cash money will have little worth. (Since Businesses will be shut-down as a result)
GOD..help us IDIOTS!!!

Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM