Showing posts with label W32 SmitFraud. Show all posts
Showing posts with label W32 SmitFraud. Show all posts

Monday, October 26, 2009

Worm - Win32.Worm.Downadup.Gen

Win32.Worm.Downadup is a worm that relies on the Microsoft Windows Server Service RPC Handling Remote Code Execution Vulnerability (MS08-67) in order to spread on other computers in the local network. The authors took various approaches to make this malware especially fast spreading and hard to remove.

SYMPTOMS
Connection times out while trying to access various antivirus-related websites.
Windows Update has been disabled.
Presence of autorun.inf files in the root of mapped drives pointing to a .dll file inside the RECYCLER folder of the drive.

Thursday, October 22, 2009

W32 SmitFraud Removal

Smitfraud is a type of computer virus that will hijack your desktop once it has been downloaded onto your pc. It has the end effect of changing your desktop to an image and and occasionally will make it so you cannot click on any of your desktop and get into any of your programs. Pop ups will ensue just like many of the other viruses on the internet today, and many of the ads and pop-ups will be for fake anti-spyware or
anti-virus programs, but you cannot click on these as they will download more and worse Trojans, spyware, and malware.

If you have clicked on one of these fake spyware programs that start to inhabit your computer, and when you boot up your system and a few seconds later your computer should alert you have some type of virus on your computer. Usually if you have Norton or MacAfee installed on your home pc it will tell you that you have some sort of problem, but usually won't be able to to remove the threat.