<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Highlight IT News &#187; virus</title>
	<atom:link href="http://www.ithighlight.com/tag/virus/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ithighlight.com</link>
	<description>Highlight IT News</description>
	<lastBuildDate>Wed, 30 Dec 2009 15:56:39 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Microsoft updates free tool to remove persistent worm</title>
		<link>http://www.ithighlight.com/2009/01/microsoft-updates-free-tool-to-remove-persistent-worm/</link>
		<comments>http://www.ithighlight.com/2009/01/microsoft-updates-free-tool-to-remove-persistent-worm/#comments</comments>
		<pubDate>Thu, 15 Jan 2009 00:38:40 +0000</pubDate>
		<dc:creator>andi</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.ithighlight.com/?p=11</guid>
		<description><![CDATA[
Back on Oct. 23, 2008, Microsoft released a critical security update for Windows: MS08-067. Isolated attacks existed at the time of the bulletin release and in our blog we strongly recommended installing the security update as quickly as possible. Later, a few trojans that exploit this vulnerability were found and a month from the release [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.ithighlight.com/ithighlight/wp-content/uploads/2009/01/conficker_final_msrt.png" alt="conficker_final_msrt" title="conficker_final_msrt" width="500" height="448" class="aligncenter size-full wp-image-476" /><br />
Back on Oct. 23, 2008, Microsoft released a critical security update for Windows: <a title="MS08-067" href="http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx">MS08-067</a>. Isolated attacks existed at the time of the bulletin release and in our <a href="http://blogs.technet.com/mmpc/archive/2008/10/23/get-protected-now.aspx">blog</a> we strongly recommended installing the security update as quickly as possible. Later, a few trojans that exploit this vulnerability were found and a month from the release of the bulletin we blogged again, this time about the first worm which exploited that vulnerability: <a title="Win32/Conficker" href="http://www.microsoft.com/security/portal/Entry.aspx?Name=Win32/Conficker">Win32/Conficker</a> (<a href="http://blogs.technet.com/mmpc/archive/2008/11/25/more-ms08-067-exploits.aspx">here</a> and then <a href="http://blogs.technet.com/mmpc/archive/2008/12/31/just-in-time-for-new-years.aspx">here</a>).</p>
<p>Over the last couple of weeks, a new variant of this worm has been affecting customers. We detect it as <a title="Worm:Win32/Conficker.B" href="http://www.microsoft.com/security/portal/Entry.aspx?Name=Worm:Win32/Conficker.B">Worm:Win32/Conficker.B</a>. In addition to exploiting <a title="MS08-067" href="http://www.microsoft.com/technet/security/bulletin/ms08-067.mspx">MS08-067</a>, this variant also uses other propagation methods; it tries to copy itself to network shares by guessing their passwords. If the password is weak, it may succeed. It also tries to spread via removable media.</p>
<p><code>Via : http://blogs.technet.com/mmpc/archive/2009/01/13/msrt-released-today-addressing-conficker-and-banload.aspx</code></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ithighlight.com/2009/01/microsoft-updates-free-tool-to-remove-persistent-worm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
