Tuesday, March 31, 2009

Conflicker Worm

Courtesy of Trend Micro, here are some valuable tips.

How do I know whether my my PCs are infected?
Scan your PCs using their current Trend Micro product or HouseCall to see whether they are infected. If it is determined that they are infected, find instructions for removal below:

Consumers

Small Business

Medium Business, Enterprise

How do I protect my PCs from being infected?

Immediately install patches/updates for MS08067 and other vulnerabilities as soon as vendors release these patches. You should configure their PCs to receive automatic updates and patches from Microsoft and software vendors.

Make sure your security software is up to date.

Disable the “Drive Auto-run” feature to avoid infections from USB drives.

Employ secure passwords using a combination of letters, numbers and symbols and frequently change them.

Take caution when searching online for DOWNAD and Conficker information. There are reports of rogue antivirus packages that are taking advantage of the situation. They will tell you that you are infected and ask you to pay money to download their application, which in many cases turns out to be malware.

Additional information from Sophos

In less than six months, the Conficker/Downadup worm has infected thousands of business networks--making it the most widespread worm infection since SQL Slammer in 2003.

If your computers are unpatched, they’re still at risk.
Download a free Conficker detection and removal tool from Sophos
Conficker uses advanced malware techniques to exploit vulnerable computers, weak passwords and USB storage devices. Learn more about how the Conficker worm works in a free 10-minute podcast with Paul Ducklin of Sophos.
Listen to the podcast about Conficker

For all your security needs, contact Ashlin.