McAfee AVERT Stinger Conficker description
Remove Conficker worm from your system
In the run up to April 1st, McAfee is offering a special build of its stand-alone cleaning tool christened Stinger which will be updated on a daily basis to include any undetected Conficker variants from the wild.
Please ensure that your copy of Microsoft Windows is patched and security software is fully up to date to ensure that April 1st 2009, is a day like any other day!
W32/Conficker.worm attacks port 445, Microsoft Directory Service, exploitin g MS08 - 067 . MS08 - 067 is an exploit similar to MS06 - 040 , which we first saw a couple of years ago .
W32/Conficker .worm attack symptoms:
- Blocks access to security - related sites
- User lockouts
- Trafic on port 445 on non - Directory Service (DS) servers
- No access to admin shares
- Autorun.inf files in recycled directory