office (01509) 505678
info@summitit.co.uk

  Small BusinessServicesSolutionsBriefingsNewsSummit IT

Anatomy of a Modern Virus Attack

1)Basic Network Layout

Basic Small Office Setup with a remote worker connecting to the Office using a Virtual Private Network Connection

Please bear in mind that there are other Vectors that could trigger a very similar attack

2)Virus gets arround firewall

Remote Worker gets Virus

Virus is transmitted through the Firewall as VPN User is seen as a trusted Client. PC inside Firewall is infected

3)Virus looks for update

Virus behind the Firewall checks for update on Internet — bypasses Firewall as Communication was started Inside

Update is newer than Antivirus Definitions on Email Virus Checker

4)Virus mass emails

Infected machine mass sends email — virus is newer than the AV Signatures so passes inspection
Simultaneously attempts to randomly infect Networked PC’s

Entire Network Compromised — creating Zombie Machines

5)Massive Denial of Service attack

Zombie Machines regularly check with Internet for Updates and Instructions

At Virus Writer’s command machines will run code on all Zombie machines as part of a Distributed Denial of Service Attack* on the organisation of virus writer’s choosing

* A Distributed Denial of Service Attack attempts to disable or hinder a Target system by the sheer mass of requests being asked of it at once. This form of attack is almost impossible to defend against. Co-ordinated attacks against the "Root DNS Servers" on the internet almost brought down the WHOLE of the Global Internet

IT can help prevent your network being compromised - See the Risk Reduction Service today

Check the Special Offer on the Risk Reduction Audit


Summit IT - The Small Business Specialist