blog
Get your DNSChanger diagnosis today!
It was about 2 1/2 months ago that the FBI, in cooperation with other law enforcement agencies, took down the DNSChanger gang with Operation Ghost Click. You may recall that there was a court order put in place to keep the formerly malicious DNS resolvers used by the DNSChanger malware working so that nearly 5 million victims didn't immedately lose the ability to navigate the Internet. The idea was to buy time - the court order was for 120 days - to allow network operators and their users a chance to clean their machines. That grace period expires on March 8, 2012.
We have been tracking the clean up effort, which after an initial burst has slowed to a trickle. We also noticed in our conversations with enterprises that many CISO's and network security personnel were unaware of DNSChanger and the associated clean up effort, despite all the initial publicity that surrounded the takedown of the operation. To get an idea of how widespread the ignorance of the DNSChanger is, we recently took a look at how many Fortune 500 companies still have DNSChanger infections on their networks. And the answer is one-half! Fifty percent of Fortune 500 companies have some sort of DNSChanger infection (and maybe many infections) on their networks. (See our press release on the study.)
Why is this a problem? Well, for one thing, it suggests that half of all large enterprises have DNSChanger infections. And since DNSChanger was most often delivered by a rootkit malware that also would deliver many other infections, it means that these enterprises likely have badly infected machines on their networks, which could lead to all kinds of trouble, maybe even with the SEC. See our PDF whitepaper on remediation for more details about the various malware infections associated with DNSChanger. The DNSChanger infection is a giant red warning light, and there is a 50% chance it is blinking for your enterprise.
Fortunately, enterprises and other network operators can easily determine if their networks have DNSChanger infections. Several organizations, including IID, have volunteered to help get the word out and will provide bona fide network operators with a diagnosis for free. These organizations are listed at the DNS Changer Working Group website. Get your network checked for DNSChanger today!
Leave a comment
Categories
Archives
- May 2013
- April 2013
- March 2013
- February 2013
- January 2013
- December 2012
- November 2012
- October 2012
- August 2012
- July 2012
- June 2012
- May 2012
- April 2012
- March 2012
- February 2012
- January 2012
- December 2011
- November 2011
- October 2011
- September 2011
- August 2011
- July 2011
- June 2011
- May 2011
- April 2011
- March 2011
- February 2011
- January 2011
- December 2010
- November 2010
- October 2010
- September 2010
- August 2010
- July 2010
- June 2010
- May 2010
- April 2010
- December 2009
- November 2009
- July 2009
- April 2009