Reasons behind the Virus attack on IIM servers
“The prestigious CAT exam of 2009 has not been able to live up to the standards its predecessors maintained”, so say the disheartened students who kept burning the midnight’s oil during long, persevering preparations. While some have lost faith in the assessment system of the IIMs, others have turned cynics and voiced sarcastic comments on various forums. Prometric, IIMs, Dr. Barua and Mr.Kapil Sibal, government, none have been spared.
There has been frenzy at various test centres across the country. The 1st day of tests, several servers stopped responding rendering thousands of students alarmed. About 30 centres closed shutters on the 2nd day. Students who managed to answer the 2-hour-15-minutes test in 4-5 hours complained of computers rebooting invariably, waste of time due to slow systems, crashes in operation-system processes like svchost.exe.
When questioned by the media about why the infrastructure was so poor, the IIMs and Prometric issued a statement that viruses had caused the tumult. In two days time, the names of two viruses were disclosed. Conflicker and W32 Nimda. But unluckily for the IIMs, people have refused to accept this theory. This article is a small attempt to prove that viruses can indeed cause furore of this scale.
About the virus
Conflicker, better known as Conficker is a worm which was in news in November 2008. It exploited vulnerability in network services of the Windows operation systems, entered the system and created chaos. http://en.wikipedia.org/wiki/Conficker. Microsoft had promptly released a patch for fixing this vulnerability on the 23rd of October 2008. http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx
But Conficker maker/makers were smarter. He/she/they released other variants of the virus, after enhancing it. So far the known variants of this virus are Conficker.A, Conficker.B upto E.
What the virus does
Conficker is a very smart worm. It enters the system either through exploiting the vulnerability mentioned about or through USB drives. Once on the machine, it gets itself administrative rights, executes some code and creates a process of its own. The process can be viewed in the Task Manager under the Processes tab. It skilfully names the process using a technical jargon and thus no normal user would ever suspect any illegitimate activity there. After this, it tries to connect to the internet through different unimaginable ports. If it finds a connection, it downloads any well-known antivirus to corroborate its legitimacy to the user. Post an anti-virus scan, the virus goes into a long sleep/hibernate mode only to wake up once more, this time to damage the system and steal information. It contacts various servers and downloads harmful malware. Presence of W32 Nimda on the computers at the test centres is just part of this gimmick. Conficker has the capacity to steal passwords and send it to it’s’ headquarters (which is still not known) through other infected computers without leaving any trace behind.
Other than this, if the virus infects any server catering to other clients, it breaks the communication channel between the server and the clients, prevents domain-name-to-IP and IP-to-domain-name resolutions, better known as DNS lookups. It prevents regular patching of the operating system by disabling Windows updates. It can render existing anti-virus softwares useless.
Why IIM servers got affected
So the claim that IIMs and Prometric, make isn’t all wrong. This virus has the capacity to take the world by a click. But they cannot take shelter under testimonial because:
1) There are good anti-virus softwares like Microsoft’s Forefront which can detect the presence of Conficker.
2) The patch release by Microsoft is available. But applicable only for genuine Windows operating systems. yes, only genuine windows. We cannot comment on wether the widows installed were anuthentic, but at least this is the logical inference out the arguments and facts presented
In our country, people are gifted with intelligence and can crack the toughest operating system codes to make its pirated copies and find workarounds to make pirated/evaluated copies into genuine ones. Thus, such a venture by Prometric and of course NIIT should have been smarter one. Prometric being a non-Indian company can be given a lee-way for the charge. But NIIT, Indian company, should have known about the intricate details of IT infrastructure in the country where more than 58% of the computers have pirated copies of operating systems and other softwares. As for the IIMs, one cannot blame the manager if the computer freaks out.
Author: Ms. Arpita Dessai has rich experience in Microsoft Applications, Windows & Testing. She loves to research on viruse, designs & possible preventions. She also loves to write. You may visit a personal blog to see another side of Ms. Arpita’s personality here and her technial writings here.



Arpita madam..! :thumbsup:
I did not know that you even love being ‘techie’.
Alpesh (Hi-fly)
I’m glad you liked it. Thodasa techie…
It’s high time reputed institutes like IIM use OSS/FS for better security, reliability and control on the software.
OpenSource software and a Open Operating System like Linux are way ahead of Windows platform when it comes to security and resistance to malware and viruses.
Hi Manvendra
First of all, thanks for reading the article. Its a big read!
I think we need to understand why Open source is better than Windows.
1) Windows has a widespread use.
2) Damaging Windows will have serious implications, monetarily and for the reputation too.
3) Why would anyone invest time and money on cracking something that is already free? Makes no sense, right!
4) Microsoft is a big company that encourages people to find vulnerabilities in their OSes. They award the ‘friendly hackers’ too. This is what many people have reported on the internet.
5) Cracking Windows gives a boost, because its like one man/woman against a huge corporation.
Now, this goof up happened because most of the machines in India have pirated copies of Windows. Which is precisely why they don’t get the critical MS Updates.
I don’t profess against Open source products. But one thing we have to accept. Microsoft Windows is very very user friendly.
I hope the reply is satisfactory. Either ways, I welcome you to share your thoughts.
Thanks and regards,
Arpita
Leave a comment!
Web Content by Ameya Pimpalgaonkar is copyright protected & licensed under a Creative Commons Attribution-Noncommercial-No Derivative Works 2.5 India License.
Based on a work at www.madeitsimple.com.
Categories
Archive
Blogroll
Tag Cloud
ABAP ABAP Simple abap simplified AIMCAT apple apple imac apple iPhone Aromatherapy career CAT CAT 2008 CAT 2009 Crack SNAP Economy English EP Essential oils GK for SNAP GMAT Grammar Holiday how to use essential oils IIFT GK list of essential oils MBA MBA in niche sector MBA opportunities Media money Netweaver Niche MBA degree parner Parnerkar Parnerkar Maharaj Poornawad prepare for SNAP GK Recession Recession and MBA SAP SAP ABAP SAP ABAP Simplified SAP EP SNAP GK TIME VARecent Posts
Most Commented
About Ameya