PC Review


Reply
 
 
rob
Guest
Posts: n/a
 
      25th Sep 2009
Good morning,

Server 2003 enterprise SP2, XP clients SP3

our network is patched appropriately with ms08-067 (at least we thought) and
we had a conficker virus appear on a non exch mail server which has now been
dealt with.

Can you advise if it is possible to locate the exact source of entry of
conficker and if so what networking techniques could be employed?

I am aware of the 3 methods of infection as below

It exploits the MS08-067 vulnerability,
It brute forces Administrator passwords on local networks and spreads
through ADMIN$ shares
It infects removable devices and network shares by creating a special
autorun.inf file and dropping its own DLL on the device.

 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Re: Conficker threat over? Alias Windows Vista General Discussion 1 6th Apr 2009 11:10 AM
Re: Regarding Conficker tomorrow Alias Windows Vista General Discussion 1 2nd Apr 2009 12:07 AM
Re: Regarding Conficker tomorrow DDW Windows Vista General Discussion 1 31st Mar 2009 08:13 PM
Re: Regarding Conficker tomorrow ray Windows Vista General Discussion 0 31st Mar 2009 07:00 PM
Re: Regarding Conficker tomorrow David B. Windows Vista General Discussion 0 31st Mar 2009 06:43 PM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 09:32 AM.