Downadup infections are skyrocketing



By dk ~ January 20th, 2009, 1:21 pm. Filed under: Threats.

Win32/Conficker.B/Downadup exploits a vulnerability in the Windows Server service (SVCHOST.EXE) for Windows 2000, Windows XP, Windows Vista, Windows Server 2003, and Windows 2008. While Microsoft addressed this issue in October with Microsoft Security Bulletin MS08-067, and Forefront antivirus and OneCare (as well as other vendor’s anit-virus products) helped protect against infections, many systems that have not been patched manually through Server Update Services and Microsoft/Windows Update or through Automatic Updates have recently come under attack by this worm. Attacked systems may lock out users, disable the update services and block access to security-related Web sites.

In response to this threat, Microsoft has:

The number of Downadup infections is skyrocketing based on the calculations of F-Secure, from an estimated 2.4 million infected machines to over 8.9 million during the last four days (as of Jan, 16).

5 Responses to Downadup infections are skyrocketing

  1. Eddie Philips

    Disabling AutoPlay is another key way to prevent spread via USB drives. We’ve documented other fixes as well, and provided links to some free tools to help. The Microsoft patches alone won’t protect from all vectors.

  2. dk

    Thanks, Eddie.

  3. FIELD

    Hi, I read your blog from time to time and I own a similar one and I was just wondering if you get a shit load of spam? If so how do you control it, any plugin or something you can suggest? I get so much it’s driving me insane so any help is much appreciated.

  4. dk

    I use Akismet plugin for Wordpress.

  5. Cialis

    Np5N3t Excellent article, I will take note. Many thanks for the story!

Leave a Reply