Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Microsoft > Patches and Vulnerabilities

November 27th, 2008, 17:52 GMT · By

Vulnerable Windows Machines Sitting Ducks for the Conficker Worm

SHARE:

Adjust text size:

Security
Enlarge picture
First Microsoft, and now McAfee is warning Windows users to expedite the process of applying a patch for a Critical vulnerability in Server Service affecting both client and server versions of the operating system.

According to the Redmond company, all supported platforms are vulnerable, including Windows 2000, Windows XP (even SP3), Windows Vista RTM/SP1, Windows Server 2003, Windows Server 2008 and Windows 7. McAfee has indicated that users not deploying the patch are vulnerable, while Microsoft has already informed that it had detected active attacks and infections in the wild, following a period when exploits were just targeted.

Users and their “machines are sitting ducks for attacks such as MS08-067, which we learned about from Microsoft last month. This type of attack is especially dangerous if your Windows Updates or security products are not up to date. Microsoft released its out-of-cycle emergency patch on the 23rd of October - more than one month ago - so you have no excuse today for being at risk,” stated McAfee security researcher Alex Hinchliffe.

As did Microsoft, McAfee warned that it had detected the Conficker Worm associated with exploits targeting this vulnerability. Conficker not only infects vulnerable operating systems lacking the MS08-067 security update, but also patches the copies of Windows so that additional malware be unable to exploit the same security hole.

“Once loaded in the service space, the worm attempts to download files from the Internet - specifically, further malware from trafficconverter.biz and data files from maxmind.com. The worm continues by setting up an HTTP server that listens on a random port on the victim’s system while hosting a copy of the worm. It then scans for new vulnerable victims to exploit, at which point the new victim will download the worm from the previous victim and so on,” Hinchliffe added.


17,577 hits · 1 comment
Link to this article · Print article · Send to friend

MUST-READ RELATED ARTICLES:


Widespread Malware Attacks Target Windows 7, Vista SP1 and XP SP3 Vulnerability

Vista SP1 TCP/IP Buffer Overflow Vulnerability Overwrites Kernel Memory

Vista SP1 and XP SP3 November 2008 Security Release ISO Image

Microsoft Patches 7-Year-Old Vulnerability Affecting Vista SP1 and XP SP3

Microsoft to Patch Just 1 Critical Vulnerability in Vista SP1 and XP SP3

READER COMMENTS:


Comment #1 by: Extremesecurity on 23 Jan 2009, 00:04 UTC reply to this comment

Did Downadup/conficker attack your network? I've created a batch file for system administrators to clean/patch/cure infected systems in their networks.

check it out here:

http://extremesecurity.blogspot.com/2009/01/beat-downadupconficker-like-pro-my.html

Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM