DNS Changer Virus Spells 'Internet Doomsday'

Huffington Post UK  |  By Posted: 25/04/2012 13:16 Updated: 25/04/2012 17:41

The end is nigh, according to the FBI. "Internet doomsday" will strike us all on 9 July when the domain name service changer virus will disconnect many internet users from the web.

PC users whose machines are infected with the DNS changer malware must disinfect their computer by 9 July, or they will be prevented by accessing the internet.

DNS changer has already forced users to fraudulent websites, interrupted web browsing and exposed affected computers to other malicious viruses, according to the FBI.

The virus works by redirecting computer users to criminals' DNS servers. DNS servers are the critical internet link that switch domain names like Google.com into a series of numbers that computers use to talk to each other.

The virus initially appeared via an online advertising campaign, which directed web users to criminal sites when they clicked an ad.

Users of infected computers are directed to dodgy websites when clicking seemingly genuine sites. Clicking Amazon for example, could steer a web users to a site that is unaffiliated with Amazon, exposing users to viruses and denying genuine sites from advertising revenue.

Symantec said in a statement: "DNSChanger has been around for a while now and from a technical perspective nothing has changed from what we know. It should be pointed out that only Windows and Mac users are affected. Linux, Android and IOS users are not.

Users who encounter problems with internet connectivity may need to contact their IPS for their original DNS settings or use a public DNS such as google on 8.8.8.8. Also, various ISPs have already implemented some sort of DNS checks to ensure their customers are either notified or fixed before everything goes dark."

The DNS virus was allegedly unleashed by six Estonian nationals who have been arrested and charged by the FBI after a two year operation.

The six were charged with running an internet fraud ring that "infected millions of computers worldwide with the virus and enabled the thieves to manipulate the multi-billion-dollar internet advertising industry".

Kaspersky Lab, which is investigating the situation, told The Huffington Post: "Our experts at Kaspersky Lab are analysing the technical details of the malware attack that has affected a number of oil facilities in Iran. Preliminary data suggests that files on several computers were overwritten with garbage code, after which the hard disks on the targeted systems were wiped clean by a malicious program.

"The data currently available neither confirms nor disproves the theory that this incident was caused by a malicious program linked to the notorious Duqu or Stuxnet programs. At the present time, we have not identified any of the files of the malicious program that wipes the system clean." they said.

There are a number of ways to avoid "internet doomsday". Kaspersky Lab offers TDSSKiller, which detects and removes DNS Changer, while a simple visual check is available at dns-ok.us.

FOLLOW UK TECH

The end is nigh, according to the FBI. "Internet doomsday" will strike us all on 9 July when the domain name service changer virus will disconnect many internet users from the web. PC users whose ...
The end is nigh, according to the FBI. "Internet doomsday" will strike us all on 9 July when the domain name service changer virus will disconnect many internet users from the web. PC users whose ...
 
 
  • Comments
  • 65
  • Pending Comments
  • 0
  • View FAQ
Post Comment Preview Comment
To reply to a Comment: Click "Reply" at the bottom of the comment; after being approved your comment will appear directly underneath the comment you replied to.
View All
Favorites
Recency  | 
Popularity
Page: 1 2 3  Next ›  Last »  (3 total)
10:23 AM on 06/07/2012
By doing a complete reformat of your hard drive (restoring it to factory condition) you can remove this and all other Malware.

Assuming the other options failed you.
09:46 PM on 06/18/2012
Taking your hard drive out and shooting it also will remove this. (P.S. Any virus can be fixed, just F.Y.I.)
12:38 AM on 05/10/2012
I suppose this is in connection with all the other doomsday scenarios we've had in the past such as the millennium when all the planes fell out of the sky, on all the dates in the last 10 years when the world has come to an end and now we have to prepare for this, ho hum..................
10:56 PM on 05/09/2012
i've given my money and possessions to mr agushi ojafara, from nigeria. he's going to look after them until the danger is over.(plus he thinks i might have won the african lottery).
08:23 PM on 05/09/2012
Am I being stupid here or is your regular antvirus software not going to protect you against this?
03:59 PM on 05/09/2012
Eh? Can someone explain what they mean by this? Do the websites go down, or do the people who own a computer lose access to internet?
10:15 AM on 06/07/2012
Your computer loses access (if it is infected). Reformatting your hard drive to factory settings will fix the problem if you find yourself unable to connect after July 9...
photo
carneliancrystal
Do I believe all the propaganda of course I do
03:03 PM on 05/09/2012
Well if huff goes down I'll change to bing
01:32 PM on 05/09/2012
I am waiting
This comment has been removed.
This user has chosen to opt out of the Badges program
11:08 AM on 05/09/2012
I posted a helpfiul link to a site which will tell you if your computer is infected and Huff chose to delete it, presumably because of the link! Just Google for DNS 2012 virus and you will find a link to an FBI site which will check your computer.
09:31 AM on 05/09/2012
That's okay -if my computer gets a virus i shall take to the doctors for some antibiotics.
10:52 PM on 05/02/2012
Whats this 'internet' thingy anyway?
07:58 PM on 05/02/2012
Is related to the millenium bug which was supposed to see computers crashing all round the world and every home PC immobilized because they didn't recognize 2000? Airplanes plunging from the sky on New Years Eve 2000?? By the way, we've been stocking up on tinned food in the shed for the last 10 years! You never can be too careful.
09:18 AM on 05/03/2012
If the amount of work that had gone into systems in the year up to Y2K hadn't been done there almost certainly have been major issues
09:24 AM on 05/09/2012
Actaully people like me spent the best part of 2 years making sure it didnt happen. If for instance had a old pc you would have found that on the night and at midnight the PC's time would have reverted to 12:30am on 01/01/1980, which should you have been running an air traffic control system could have been fun !. Notice the I typed 12:30am, its really 00:30am or if midnight 23:59 and 50 seconds, the next time is 00:00 not 24:00. Dont dismiss year 2000 as a problem that didnt exist, it did big time, its was just lucky that it was spotted in time.
07:23 PM on 05/02/2012
Will we see a mass suicide of Facebook addicts?
07:59 PM on 05/02/2012
Can only be of the good IMHO. Get a real life folks!
10:55 AM on 05/09/2012
always light at the end of the tunnel
07:12 PM on 05/02/2012
Is it a scare to stop ppl changing their dns to access the wonderful 'Pirate Bay" ?
06:17 PM on 05/02/2012
the numbers for the lottery draw are also there for the Saturday, May 2012. Can you see them