Tuesday, March 31, 2009

Essential Conficker Virus Links

- Here are some tools you can use to battle the Conficker.C virus. The virus is set to go off on Wednesday:

Latest Windows software update: http://update.microsoft.com/windowsupdate/v6/default.aspx?ln=en-us

Get a free PC Safety Scan: http://onecare.live.com/site/en-us/default.htm

More information about how to protect yourself from Conficker can be found at: http://www.microsoft.com/protect/computer/viruses/worms/conficker.mspx

McAfee Security Center:

http://www.mcafee.com/us/threat_center/conficker.html

Help protect windows from Conficker here: http://technet.microsoft.com/en-us/security/dd452420.aspx

Get a free PC Safety Scan here: http://onecare.live.com/site/en-us/default.htm

Additionally, Microsoft has implemented an Antivirus Reward Hotline at 425-706-1111, and an Antivirus Reward Mailbox, avreward@microsoft.com, where tips can be shared.

Microsoft is offering a $250,000 reward for information that leads to the arrest and conviction of whoever is responsible for creating the Conficker Internet worm that has infected millions of PCs.

How to Protect yourself

THUNDER BAY, ON, ---- March 28, 2009 ----- Media Hypes Up Conficker Virus, It is Y2K all over again. The media is hyping up the newest virus to hit the web, named the Conficker Virus. On April 1st, this virus is supposed to unleash fury on Internet users around the world. You better stock up on canned food and make sure your generator diesel tank is full.

Realistically, you may receive a few more spam messages and perhaps Facebook will take an extra millisecond or two to load.

Here are some simple tips to protect yourself:

1. Don't surf porn sites (or other nasty sites - or if you do use Firefox)
2. Don't open emails with ecards from strangers (or any other attachments from suspicious people)
3. Make sure your anti-virus and firewall are up to date and working
4. Make sure your Windows Updates are working
5. Put a lead tarp over your computer and aluminum foil over your head
.. ok, that was a joke but you get the point.

These worms are nothing new, the Internet is constantly bombarded with viruses and spam bot-nets. The only thing making this one different is that it has a timed release date allowing the media to hype up about it advance to scare everyday computer users. The anticipation of these computer glitches seem to be worse than the actual glitches.

What the media should do is try to get those who have infections on their computers already to get them cleaned up. It is this network of infected computers around the world that is responsible for sending out spam and causing other mayhem unknown to the owners of these computers. These spammers and hackers seldom use their own computers to unleash viruses and spyware.

What is Conficker?

What is Conficker?

Conficker, also known as Downadup or Kido, is the latest super virus to spread around the Internet and has security experts in a panic. When last we checked, about a week ago, Conficker had already spread to 9 million PCs, with little sign of slowing. Now it has infected at least 10 million PCs and experts believe there may be up to 350 million vulnerable computers out there.

The worm isn't just exploiting a networking hole, however; it features a sophisticated method of cracking administrator passwords, making it difficult to remove, and also copies itself to USB drives so that it can spread even when the online flaw is plugged.

What havoc has it wreaked so far?

So far this schizophrenic virus hasn't caused any serious damage. Its primary effect has been to prevent people from installing Windows updates and anti-virus software that could potentially thwart the malware. What worries security experts, though, is Conficker's ability to launch a second stage, downloading additional code that could hijack computers completely, steal personal information, or commit basic extortion -- demanding money for fake anti-virus software claiming to remove the infection.

How do you know you have it? What are the symptoms?

Since it is currently sitting dormant, possibly awaiting further instructions, Conficker is very difficult to detect without running an up-to-date virus and malware scanner. However, if your Internet connection is running abnormally slowly, if services such as Windows Defender is disabled, or if you are unable to access some security-related Web sites (like those for anti-virus programs), then you may be infected and should certainly follow the removal directions included below.

Is it the biggest virus ever?

Conficker has certainly spread far and wide, and gathered its fair share of media attention, but is it the biggest virus ever? That remains to be seen. It is certainly the biggest threat to personal computer security to come along in the last few years and would easily claim a spot on our list of the 15 Sneakiest Computer Viruses.


What can you do to stay safe?

Microsoft has already issued a fix for defeating the worm, but a full 30-percent of Windows PCs have yet to download the security update. So make sure you run Windows update and download the latest fixes. The latest versions of Norton, Kaspersky, McAfee, and the Switched-endorsed AVG are all capable of detecting and blocking Conficker, so make sure you have downloaded all updates to your anti-virus software.

Experts also suggest disabling autorun to prevent yourself from becoming infected via USB drive. Turning off autorun isn't easily done, so follow these directions:

* Go to the Start Menu and select 'Run'
* Run the following command: gpedit.msc
* In the Group Policy window go to Computer Configuration -> Administrative Templates -> System
* Under 'System,' double-click the 'Turn Off AutoPlay' option from the right hand pane
* Select 'Enable' and choose 'All drives' from the drop down menu

Does getting infected mean you have to get a new computer entirely?

No. There's no need to buy a new computer, as most security programs offer ways to remove the worm.

If you think you're infected, download and run Microsoft's Malicious Software Removal Tool, or follow the directions found here to manually remove the worm.

Will it strike again? If so, where and how?
It's impossible to know if and when Conficker will strike again, especially since it is still running free and has yet to reveal its true purpose. Since Conficker is capable of downloading additional malicious code, it is also capable of self-updating. This function allows the worm to take advantage of other security holes once the ones it currently exploits are closed.

Potentially, Conficker could hang around for a very long time, or resurface in a slightly different form down the road. Knowing exactly when or where Conficker will rear its ugly head is simply impossible, but you can keep yourself safe by making sure your PC and security software (that includes anti-virus, spyware tools, and firewall) are up-to-date. Also, be sure to practice good browsing habits: avoid opening e-mail attachments from unknown addresses, don't download software from questionable sources, and stay away from sites whose security and legitimacy are uncertain.