A walm welcome to you!!!

Let us share something worth that will help all of us to increase our knowledge orientation in the huge and ever expanding world of Networking!

I have created this blog to help each and everyone who visits this blog to get himself acquainted with new technologies, recent developments in the world of technology....

I hope you will help me share my knowledge with you....!!!!

Monday, February 20, 2012

Internet closed on 8th March,2012?

Yes, very true, FBI is closing Internet on 8th March,2012 in more than 100 countries!!

Internet services will be shut down on this very day due to  a disastrous virus that has infected lakhs of computers in more than 100 countries. This virus belongs to the Trojan category and is named as the DNSChanger. When released on the Internet, this virus sends manipulated/fraudulent websites to the web surfers by changing the entries listed in the Domain Name System (DNS).
 Now, Domain Name System (DNS) is a service that converts your domain names (for example, http://www.lifedownloadedfromheavens.blogspot.com into it's IP Address). DNS is the backbone
of the Internet addressing scheme. Imagine, what would be happening if this backbone is affected...

This virus has affected many computers including 500,000 from American continent alone. The FBI
 has shutdown the DNSChanger network, but the solution is only a temporary one. The court has
 ordered a deadline and that's 8th March. Users of Windows & Mac are at a greater risk of this Trojan
since it exploits the browser directly and thereafter your operating system gets infected.

Let me tell you something about rouge DNS Servers. A rouge DNS Server is the one that redirects the
DNS name resolutions to other DNS Servers. This is something difficult to understand, but technical
people would interprete this easily. Imagine that your Mom has given you a 'code' and its meaning is
known to you (that is you are a DNS Server in this case). She has told you to tell that code to your
brother. Now, if you are a rouge DNS Server, you will not tell it to your brother, but you will 'redirect'
that code to your sister. This is also called as DNS Hijacking.

Here's a checklist with the aid of which you can self-check of your computer to make sure you're not infected by comparing your computer's DNS setting to the list of rogue DNS servers:

85.255.112.0 to 85.255.127.255
67.210.0.0 to 67.210.15.255
93.188.160.0 to 93.188.167.255
77.67.83.0 to 77.67.83.255
213.109.64.0 to 213.109.79.255
64.28.176.0 to 64.28.191.25

FBI has also publish an article on this issue and you can read it on this address:
http://www.fbi.gov/news/stories/2011/november/malware_110911/DNS-changer-malware.pdf

To brief out the process mentioned in the checklist, you can follow the following steps:
(i) Click Start
(ii) Go to Run and type 'cmd'. This opens the command prompt window
(iii) Type 'ipconfig /all'
(iv) In the Local Area Connection details, check the DNS Server Address.
(v) Match it with the above addresses.

I hope you can now safeguard your PC against the above deadly trojan.

I request you to PLEASE HAVE A BACKUP OF ALL YOUR WORK, FILES & CRUCIAL DATA.

Also, HAVE AN UPDATED ANTIVIRUS PROGRAM INSTALLED ON YOUR COMPUTER.

It is RECOMMENDED THAT YOU TURN ON FIREWALL ON YOUR COMPUTER




3 comments:

  1. well i cud digest nly half of this post...will read it again for a better understndng...btw the add wch u hv mentioned dey r of dns rogue servers na???? mine is 218..somethng..wat aftr 8th march??

    ReplyDelete
  2. 218....okkk!!!!good that you were successful to find out the DNS Address!!! You must say thank God!!!!!! Since your address is starting from 218, then there is no problem!!!You are safe. Your DNS address is not a rouge server i.e. it is not redirecting you to any other server fraudulently. But if our country is seen in the 100 countries list, then Internet might be shutdown on 8th March only.

    ReplyDelete
  3. hehe felt nice after readng the last statemnt of ur reply....yeah i right way found out the dns add readng ur instruction simultaneously... thnks :)

    ReplyDelete