|
Blue Forest http://www.lslnet.com at 19:08 on June 28, 2006
Computer virus history and common sense A Great One possibility raised by the first-now known as HIV, but did not get much attention.
1975, the United States popular science writer John Brunner (John Brunner), wrote a book entitled "Sasser Knights" (Shock Wave Rider), the book, first described in the information society, justice and evil both computer as a tool of struggle stories becoming one of the best-selling book.
The summer of 1977, Thomas McNair Ryan (Thomas.J.Ryan) of science fiction "in the spring of P-1" (The Adolescence of P-1) becomes a best-selling book, the authors describe in this book can be a computer virus infection, the virus ultimately controlled by seven, 000 computers, causing a catastrophe.
November 3, 1983, Fred Cohen (Fred Cohen), Dr developed in the course of operation of a complex system can be self-destructive procedures, Donald Adleman (Len Abstract In) named it as computer viruses (computer viruses). and once a week in the formal discussion of computer security, experts in the eight hours after the operation VAX11/750 computer systems, a virus experiment was a success, a week later allowed the five experimental demonstration, the experiment proved the existence of computer viruses.
Early 1986, in Lahore, Pakistan (Lahore), BASIT (Basit) and ranked (Amjad), the two brothers owned a small shop in the IBM-PC and its special BIOS. They prepared a Pakistan virus, Brain. Year spread to the rest of the world.
March 2, 1988, an Apple machine virus, which infected Apple machines stop working days, only shows "to all Apple computer users that the message of peace." Apple plane to celebrate his birthday.
November 2, 1988, the United States has more than 6,000 computers were infected with the virus, causing the Internet to operate normally. This is a very typical computer viruses infecting computer networks, forced the U.S. government to react immediately, the Defense Department set up a computer emergency response team. This incident is being attacked in the five computer centers and 12 regional nodes, connected to the government, universities, research institutes and government contracts have 250,000 computers. This virus, the computer system reached 96 million U.S. dollars in direct economic losses. This virus is a program designer Robert Morris (Robert T.Morris), then aged 23, was at Cornell (Cornell) University graduate students.
Robert Morris virus designed to utilize the weakness of the system. Since Robert Morris became the largest electronic network intrusion logs invaders, and have been allowed to participate in Cornell University's graduate design and user access privileges Harvard Aiken super center. Thus he was sentenced to three years probation, a fine of 10,000 U.S. dollars, he was also ordered to carry out 400 hours of a new service.
By the end of 1988, China's State Statistics Department found that the balls virus.
Note : In this paper, worms, viruses often mentioned as different types of virus.
(Www.chinakv.com,2000-11-01)
. Reviewing the history of computer virus
You know that the concept of the virus from a computer game?
The origin of computer virus
In fact, the concept of computer virus originated very early in the first few years before the appearance of commercial computer, the computer pioneer A Great (John Von Neumann), in his paper "complicated theory and automatic devices for the organization", the procedure has been outlined a blueprint for the virus. But at the time, most of the computer experts are unable to imagine such a self-reproduction procedures.
1975, the United States popular science writer John Brunner (John Brunner), wrote a book entitled "Sasser Knights" (Shock Wave Rider), the book, first described in the information society, justice and evil both computer as a tool of struggle stories becoming one of the best-selling book.
The summer of 1977, Thomas McNair Ryan (Thomas.J.Ryan) of science fiction "in the spring of P-1" (The Adolescence of P-1) becomes a best-selling book, the authors describe in this book can be a computer virus infection, the virus ultimately controlled by seven, 000 computers, causing a catastrophe. Virtual science fiction world of things in the last few years has gradually become a nightmare for computer users.
Almost at the same time, the famous AT & T Bell Laboratories in the United States, three young people in his spare time, played a very silly game : eat each other to write out the procedure for people to fight against each other. This is called "Core Wars" (core war) in the game, further computer virus "infection" embodied in the concept.
November 3, 1983, a University of Southern California student Fred Cohen (Fred Cohen) in the UNIX system, the system will cause a write-up of the procedures, but the procedures have not attracted the attention of some professors agree. Cohen To prove their theory, but these procedures will be published in papers at that time caused a lot of shock. Cohen's procedure for a destructive computer virus with the concept of concrete forming.
However, such procedures have been truly devastating infection called "virus" that is, two years after the one in the "Scientific American" Magazine. One called Duteni (AKDewdney) columnists discuss the "Core Wars" with the Apple II computer (other suspect, is the popular Apple II computer, in that tragic, we also familiar with the PC simply disappeared), has begun procedures such as HIV. Since then we have this infection or destructive procedures, and finally a "virus" can be referred by name.
The first real computer virus
By 1987, a computer virus C-BRAIN Comes (This does not seem worth celebrating matter). Generally, the industry has recognized this is the real ancestor of integrity features of the computer virus. The virus program is a Pakistani brothers : Baster (Basit) and Amjad (Amjad) wrote, in a local business selling personal computer shops, local pirated copy software in vogue, their main purpose is to prevent the arbitrary software bootlegging residences. Murder someone stealing their software C-BRAIN will attack, a lot of hard disk space left to beat eat.
This virus is not very powerful at the time, but later some C-BRAIN as a blueprint for those who wish to produce some deformation of the virus. And the creation of new viruses, one after the other, not only his own work, or even a lot of creative groups (such as NuKE, Phalcon/Skism, VDV). Various anti-drug, anti-virus and anti-virus software and professional companies also have emerged. For a time, various anti-virus and virus creation procedures, continued to emerge, like a hundred schools of thought contend.
DOS era of the well-known virus
"DOS era of the virus", implying that it is made from a bygone era from DOS, you may not think of your readers have now entered the era of Windows 95/98, the virus does not infect DOS period. In fact, because the Windows 95/98 at best, but there is a framework in the DOS operating system, even though they are in Windows 95/98, or will invite careful!
Jerusalem (Jerusalem)
The antiques there are better known in another virus, called "Black." Why is there so interesting alternative name? The reason is very simple : As long as every Friday is the day on the 13th, the virus will attack. And the attack will be enforced by all users termination procedures, symptoms quite vicious.
Michelangelo (Michelangelo)
Michelangelo's name, some of the early computer users, can be said is famous, thunder from the blue. In addition to its own well-known reasons generation artist, Michelangelo's name, it is more important is the fact that it is destructive to the alarming : the annual March 6 Michelangelo birthday (which is why it is called "Michelangelo" reasons), to the virus will Disk Format for the masterpieces birthday. So, you have all the information hard to create a moment, there's reversion.
Monkeys (Monkey)
Monkey said to be a "guide" of the virus, if you use the system by Monkey infected floppy disk, started up the virus invaded your computer, and then wait for the removal of the hard drive partition table, so you have a button will appear, "Invalid drive specification" message. Compared to "paper" documents will be infected by the virus can only be carried out by means of poisoning, Monkey is the more intractable.
Music pest virus (Music Bug)
The attack loudly sing, or even data loss, unable to open the virus, the virus is a native of Taiwan. So, when the computer automatically sent a series of music you hear, do not think that your computer intelligent than others, it is highly likely poisoned.
In fact, many singing the virus, there is another well-known virus (forget what was the name down) attack will be high singing "two tigers"!
DOS period of the virus types is fairly complicated, but continually rewriting the existing virus. Some even write to the latter part of the so-called "double-engine", a virus could create more diverse landscape, people stopped! And the virus is a wide range of symptoms, some sing, some will be deleted documents, and some will be Format hard disks, and some will show a wide range of on-screen graphics and sound effects. But, fortunately, these DOS period antiques virus, since most anti-virus software can be easily swept away, lethality has already been changed.
Windows in the coming period
With the popularity of Windows 3.1 in the world, officially entered the Windows operating environment of the personal computer era. Shortly afterwards, the very popular Windows 95/98, so that almost all personal computer in the operating environment under Windows. In the Windows environment and most well-known is probably the "macro virus" and "32-bit virus."
Macro Virus
With the development of packaged software under Windows, many software to provide so-called "macro" function, so users can "create macro" approach to the cumbersome process of recording into a simple directive to facilitate their operations. However, this convenient function, and those who wish to read the design, eventually making the "paper-based" virus has entered a new milestone : the traditional paper-based HIV infection only exe and com suffix for the implementation of documents and the Word macro virus will be infected, Excel, AmiPro, Access software and the data to be stored documents. More exaggerated, this macro virus is a cross-platform operation. Word Macro virus for example, it may be infected with DOS, Windows 3.1/95/98/NT, OS/2 and Macintosh systems have a Word document, and overall template.
In these macro viruses, in addition to the back to talk about the most famous Melissa is the Taiwan NO.1B failed to report them. This virus is the situation : the attack on the 13th of each month, if you opened a Word document, a dialogue window screen will ask you to count the numerous problems. Got it wrong, then (this complex can be quickly calculated the count only about Superman Come) will open 20 consecutive window, and then there was another issue, which plots indefinitely until the system resource depletion and ruin so far.
Although the virus is highly contagious among Acer, but fortunately it is not too destructive power, but also more easily detoxification methods, even without anti-virus software on their own manual detoxification.
32 virus
The so-called "32-bit viruses," is in the Windows 95 after a new virus pattern file, which although they are infected exe implementation document, but this virus relations with the 32-bit Windows procedures expenses, the most famous of which is very popular in the last year, the CIH virus.
CIH virus astuteness, because he can put his body was disassembled Cypriot infection in the paper, it will not change the size of the infected document, the anti-virus software are not easily detectable. The last version of the CIH virus, in addition to monthly on the 26th stage, Format your hard disk swap, and sometimes even damage the Mainboard BIOS information so that you can not switched on! Although most anti-virus software has the latest virus signatures can solve this intractable, but because the power is really strong, we still care to the next. (CIH may attack this year on April 26, you will not be contingencies? )
Internet revolution
Some say the emergence of the Internet, the explosion of a new wave of the information revolution. Because on the Internet, was shortened to the distance between the minimal distance from various websites and the creation and use of the search engine so that everyone can easily access desired information from the network.
Internet blamed for creating a substantial flow of information, but 有心 spread viruses, steal other people's account numbers, passwords computer hackers, the letter provides an excellent network channels. For this reason, we have these general users, enjoy the convenience brought about by the Internet, but also into another fear.
The new shortcut to the spread of the infection
Due to the Internet as a convenient mode of transmission diversity. Traditional virus might spread the disk or other storage media, and now you have the e-mail or ICQ, to bring in a document sent to friends, and we transmission of the virus to him; Even downloaded from the Internet, they may have received a document containing the virus.
But although the network makes the virus more easily spread, but the virus is still the traditional type, as long as they do not arbitrarily long, long way from some unknown documents downloaded from the website (as a well-known websites in order not to drop it on their own signs, with most of the documents downloaded toxicity after treatment), the installation of anti-virus software and update virus. After downloading the documents will not rush implementation of the first steps for further toxicological (infection because of the traditional procedures, if not implemented, it will not be infected with the attack), and most have avoided poisoning cases.
The rise of second-generation virus
On the front are a variety of virus, basically belong to the traditional type of virus, which is the so-called "first generation virus." Such a call, mainly because the Internet is used to distinguish flourish, the latest new virus. These newly-emerging virus, the virus is essentially there is a great difference between traditional and, therefore, someone to be known as "second-generation virus."
HIV virus and the second biggest difference between the first generation and second-generation transmission of the virus lies in the way the browser-based, and this was really shocking!
In fact, on the website for the convenience of web page designers can create even more spectacular animation, the website will enable more sense of space, several large companies jointly worked out Active X and Java technology. Through these technologies, or even be able to tell whether you use the software version, which I suggest you download the software to be updated version, for the majority of users, it is very convenient tool. But wanting to bring animation to the normal execution of these pages, the browser will automatically be downloaded from the procedure Active X and Java applets to harddisk. In this process, the development of malignant procedures were also using the same channels, among those networks into a personal computer. This is the recent rise of the "second-generation virus" is the so-called "Internet virus."
Soldiers arrive, we will send soldiers to stop, prevent the water
The second generation of the common viruses, not destructive, for example, in a browser window constantly open a "window bomb," issued with a digital timer "outrageous," the "busy bears", as long as the browser closed, the computer will not be affected in any way. But with the help of advanced technology, there is no guarantee that this would not updated, and even more destructive virus.
However, we should not be too pessimistic because of this trend, you do not mean to reject the use of computer online. The entire history of the development of computer viruses and anti-virus software has been the ongoing confrontation, if careful, can still happily touring the world on the Internet.
Since finishing "PCHOME> and" virus "web site
Chronology of computer virus history (English)
Http://www.infoplease.com/ipa/A0872842.html
1949
Theories for self-replicating programs are first developed.
1981
Apple Viruses 1, 2, and 3 are some of the first viruses "in the wild," or in the public domain. Found on the Apple II operating system. Texas A&M via the viruses spread through pirated computer games.
1983
Fred Cohen, while working on his dissertation. formally defines a computer virus as "a computer program that can affect other computer programs by modifying them in such a way as to include a (possibly evolved) copy of itself. "
1986
Two programmers named Basit and Amjad replace the executable code in the boot sector of a disk CFTD with their own code designed to infect each 360kb CFTD accessed on any drive. Infected floppies had "& Brain "for a volume label.
1987
The Lehigh virus, one of the first file viruses, infects command.com files.
1988
One of the most common viruses, Jerusalem, is unleashed. Activated every o'clock the 13th. the virus affects both. exe and. com files and deletes any programs run on that day.
Scores MacMag and the Macintosh virus cause the first major outbreaks.
1990
Symantec launches Norton AntiVirus, one of the first antivirus programs developed by a large company.
1991
Tequila is the first widespread polymorphic virus found in the wild. Polymorphic viruses make detection difficult for virus scanners by changing their appearance with each new infection.
1992
1300 viruses are in existence, an increase of 420% from December of 1990.
The Dark Avenger Mutation Engine (DAME) is created. It is a toolkit that turns ordinary viruses into polymorphic viruses. The Virus Creation Laboratory (VCL) is also made available. It is the first actual virus creation kit.
1994
Good Times hoax email tears through the computer community. The hoax warns of a malicious virus that will erase an entire hard drive just by opening an email with the subject line "Good Times. "Though disproved. the hoax resurfaces every six to twelve months.
1995
Word Concept becomes one of the most prevalent viruses in the mid-1990s. It is spread through Microsoft Word documents.
1996
Baza, Laroux (a macro virus), and are the first to Staog viruses infect Windows 95 files, Excel, and Linux respectively.
1998
Currently harmless and yet to be found in the wild. StrangeBrew Java is the first virus to infect files. The virus modifies CLASS files to contain a copy of itself within the middle of the file 's code section and to begin execution from the virus.
The Chernobyl virus spreads quickly via. Exe files. As the notoriety attached to its name would suggest. the virus is quite destructive, attacking not only files but also a certain chip within infected computers.
Two California teenagers infiltrate and take control of more than 500 military, government, and private sector computer systems.
1999
The Melissa virus, W97M/Melissa, executes a macro in a document attached to an email. which forwards the document to 50 people in the user 's Outlook address book. The virus also infects other Word documents as attachments and subsequently mails them out. Melissa spread faster than any previous virus. infecting an estimated 1 million PCs.
Bubble Boy is the first worm that does not depend on the recipient opening an attachment in order for infection to occur. As soon as the user opens the email. Bubble Boy sets to work.
Tristate is the first multi-program macro virus; it infects Word, Excel, and PowerPoint files.
2000
The Love Bug, also known as the ILOVEYOU virus sends itself out via Outlook. much like Melissa. The virus comes as a instead of the VBS attachment and deletes files, including MP3, MP2, and. JPG. It also sends usernames and passwords to the virus' author's.
W97M.Resume.A, a new variation of the Melissa virus, is determined to be in the wild. The "resume" virus acts much like Melissa. using a macro to infect Outlook and Word spread itself.
The "Stages" virus disguised as a joke email about the stages of life that spreads across the Internet. Unlike most previous viruses. Stages is hidden in an attachment with a false. " txt "extension, making it easier to lure recipients into opening it. Until now, it has generally been safe to assume that text files are safe.
"Distributed denial-of-service" attacks by hackers knock Yahoo, eBay, Amazon, and other high profile web sites offline for several hours.
2001
Shortly after the September 11th attacks. the Nimda virus infects hundreds of thousands of computers in the world. The virus is one of the most sophisticated to date with as many as five different methods of replicating and infecting systems. The "Anna Kournikova" virus. which mails itself to persons listed in the victim 's Microsoft Outlook address book. worries and analysts who believe the relatively harmless virus was written with a "tool kit" that would allow even the most inexperienced programmers to create viruses. Worms increase in prevalence with SIRCAM. CodeRed. and BadTrans creating the most problems. SIRCAM spreads personal documents over the Internet through email. CodeRed attacks vulnerable webpages. and was expected to eventually reroute its attack to the White House homepage. It infected approximately 359. 000 hosts in the first twelve hours. BadTrans is designed to capture passwords and credit card information.
2002
Author of the Melissa virus, David L.. Smith, is sentenced to 20 months in federal prison. The LFM-926 virus appears in early January. displaying the message "Loading.Flash.Movie" as it infects Shockwave Flash (. swf) files. Celebrity named viruses continue with the "Shakira. "" Britney Spears "and" Jennifer Lopez "viruses emerging. The Klez worm. an example of the increasing trend of worms that spread through email, overwrites files (files with its payload fills zeroes). creates hidden copies of the originals. and attempts to disable common 抗 products. The Bugbear worm also makes it first appearance in September. It is a complex worm with many methods of infecting systems.
2003
In January the relatively benign "Slammer" (Sapphire) worm becomes the fastest spreading worm to date, infecting 75. 000 computers in approximately ten minutes. doubling its numbers every 8.5 seconds in its first minute of infection. The Sobig worm becomes the one of the first to join the spam community. Infected computer systems have the potential to become a spam relay points and spamming techniques are used to mass-mail copies of the worm to pot ential victims.
2004
In January a computer worm, called MyDoom or Novarg. spreads through emails and file-sharing software faster than any previous virus or worm. MyDoom email entices recipients to open an attachment that allows hackers to access the hard drive of the infected computer. The intended goal is a "denial of service attack" on the SCO Group, a company that is suing various groups for using an open-source version of its Unix programming language. SCO offers a $ 250, 000 reward to anyone giving information that leads to the arrest and conviction of the people who wrote the worm. |
| |