Friday, January 23, 2009

Confickr/Downadup Worm Spreading Fast & Hard to kill

The Confickr/Downadup Worm is spreading fast and is hard to kill according to Information Week Dark Reading recent articles. The conficker worm, which originated in China, has now extended across 83 countries, and is particularly virulent in the United States, Spain, Taiwan, Brazil and Mexico. In the U.S. alone, PandaLabs has identified at least 18,000 infected computers, although the real figure is probably much much higher. This worm is working like the blaster worm which was devistating to many networks a few years back. A good example of how fast this worm is moving is out of 2 million analyzed, 118,000 were infected. Apparently there was a patch for the worm in October, and any computer that did not download Microsoft's patch is vulnerable. The worm then shuts down the computers ability to download the patch or update their antivirus software. The worm also favors mp3 players and usb drives by running a program that asks the consumer if they want to open the device to view the files, once clicked yes to view the contents it infects the computer. Read more at the Panda blog entry for this worm here http://research.pandasecurity.com/archive/Warning_3A00_-Conficker-worm-infections-gaining-traction.aspx?sitepanda=empresas

Download's Microsoft patch here
http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx

Disinfect affected machines using Malware Radar for corporate networks, or ActiveScan for personal computers. - Disable AutoRun for USB devices - Make sure that all antivirus and security solutions are updated to their latest product version and signature file version.

Double check that your antivirus software is updating, run full scans, visit our web site onine resource page for free online scans, and also add Panda's free scan to the list as well which requires a quick registration found here

http://www.pandasecurity.com/activescan/index/?track=1&Lang=en-US&IdPais=63

As always I will keep you posted on any new news!

Computer Gal

No comments: