Free Newsletter
Register for our Free Newsletters
Newsletter
Zones
Access Control
LeftNav
Alarms
LeftNav
Biometrics
LeftNav
Detection
LeftNav
Deutsche Zone (German Zone)
LeftNav
Education, Training and Professional Services
LeftNav
Government Programmes
LeftNav
Guarding, Equipment and Enforcement
LeftNav
Industrial Computing Security
LeftNav
IT Security
LeftNav
Physical Security
LeftNav
Surveillance
LeftNav
View All
Other Carouselweb publications
Carousel Web
Defense File
New Materials
Pro Health Zone
Pro Manufacturing Zone
Pro Security Zone
Web Lec
 
ProSecurityZone Sponsor
 
ProSecurityZone Sponsor
 
ProSecurityZone Sponsor
 
ProSecurityZone Sponsor
 
ProSecurityZone Sponsor
 
ProSecurityZone Sponsor
 
 
News

Free tool from BitDefender cleans up Downadup infection

BitDefender UK : 13 March, 2009  (New Product)
Users of computers infected by the latest version of the Downadup worm can obtain a free clean-up tool from BitDefender to restore their equipment
BitDefender has detected a new and more aggressive version of the Downadup virus which is spreading by using a Windows RPC Server Service vulnerability. Called Win32.Worm.Downadup.C. - this latest version is more resistant to disinfection. Once a system has been compromised, the worm disables Windows Update and blocks access to most anti-virus websites in order to disrupt attempts to disinfect the machine.

BitDefender is the first AV vendor to offer a free tool which disinfects all versions of Downadup and is available for all infected users. It is claimed that this domain is the first to serve a removal tool without being blocked by the e-threat.

The worm itself is not new, it made its first appearance in late November 2008, when it was labeled Conficker or Kido. The worm is also known for exploiting the vulnerability described in the Microsoft security bulletin MS08-067. After successful exploitation it used to install rogue security software onto infected machines.

"BitDefender Labs has been seeing an increase in worms, like Downadup, that have a built-in mathematical algorithm, generating strings based on the current date," said Vlad Valceanu, BitDefender's senior malware analyst. "The worms then produce a fixed number of domain names on a daily basis and check them for updates. This makes it easy for malware writers and cybercriminals to upgrade a worm or give it a new payload, since they only have to register one of the domains and then upload the files.'

To stay up-to-date on the latest e-threats, sign-up for BitDefender's RSS feeds here.
Bookmark and Share
 
Home I Editor's Blog I News by Zone I News by Date I News by Category I Special Reports I Directory I Events I Advertise I Submit Your News I About Us I Guides
 
   © 2012 ProSecurityZone.com
Netgains Logo