Automated PC Solutions
VACM - Virus Alerts for the Common Man

get it now:   #1 AntiSpyware    #1 AntiVirus    #1 Personal Firewall      
   
      VACM Home      VACM Links      APCS Home     
            bookmark this page: Bookmark this page on Delicious...

Conficker awakens (aka Downadup or Kido!)... its first payload is a scam to get your money (solution included)

  Your old boxes are worth CASH $$...   Click to learn more... 
 

Electronics
Bargains

 


VACM Home
  VACM How-To Movie:   Learn how to Remove Spyware from your PC for free (really!).   Click to Watch the video.  


Greetings from The VACM Team,

In This Issue:
----------------------
- Conficker awakens... its first payload is scareware designed to get you to pay money for a bogus antivirus product.

 You are free to forward this critical information to anyone
 you wish as long as it is not modified in any way.

 People wishing to subscribe to the VACM Alerts may do so at:
     http://apcsnh.com/vacmsign.htm


***************************************************
* The Bottom Line...
***************************************************

A few  weeks ago, we all heard the news about
the terrible new computer virus called Conficker / Downadup / Kido!  that was supposed to
wreak havoc starting on April 1, 2009. Since its appearance, Conficker (aka Downadup
or Kido!)  *has* indeed infected many millions of computers worldwide.

As April 1, 2009 came and went, Conficker appeared to be a dud.  But, Conficker is now
morphing into a real threat that you need to be aware of.  New, virulent strains of Conficker
are now being detected in the wild. 

F-Secure has made available a Conficker Removal Tool (W32.Downadup.GEN).

CONFICKER AWAKENS:
The Conficker worm started “waking up” recently (April 10, 2009) and there are now
some new Conficker variants showing up on computers worldwide.  This Conficker variant,
one of the first, actually uses the “scareware” tactic of popping up
phony “virus infection detected … click to get antivirus solution…”
messages which will then attempt to charge you $49.95 to buy the PHONY antivirus software
to remove a non-existent virus from your computer when what you really have is a
Conficker virus infection that will NOT be removed by the phony antivirus software. 
The phony software you would be presented with is called “Spyware Protect 2009” or
“Spyware Guard 2008”. If this happens to you, read the next section entitled "What You Should Do".

SCAREWARE TACTICS:
If you get any popups warning you that a virus was detected on your PC and offering to
let you get a removal tool by clicking a button or link, do NOT do it.  This is a scareware
tactic.  Scareware tactics are designed only to scare you into entering your credit card
information for a phony product to get rid of a phony virus.  The scareware scam seems
to be coming from a server in the Ukraine, according to the Washington Post.

NOTE:  within just the past couple of months, we also reported on the "Antivirus XP" scareware tactic
This particular Conficker/Downadup payload uses a very similar tactic to steal your money.

***************************************************
* What You Should Do
***************************************************

How to protect against the Conficker / Downadup virus

STAY SAFE:
To stay protected from Conficker and its variants, you must make sure that you
have ALL the latest Windows Updates and all the latest updates for your antivirus software. 

How Conficker/Downadup Spreads:
Conficker spreads itself to other computers in many different ways.  This virus can be carried
by MP3 players, Digital Cameras, USB thumb drives, your local network, infected websites
and any USB or FireWire device that looks like a disk drive to Windows, etc. 
Conficker is VERY adept at spreading and has been the fastest spreading virus we have
seen in many years. 

IF YOU GET INFECTED - Conficker Removal Tools and Instructions:
If you get infected with Conficker, seek help from a qualified computer tech.  If you
are confident in your computer skills, you can also read how to manually get rid of
Conficker with our detection and removal instructions for Conficker/Downadup here.  
Easier still, download the Conficker/Downadup Removal Tool and follow the
instructions on how to use these tools.  If you are not comfortable using command line
tools, seek help from an experienced computer person.

Please pass this info on to your employees, friends, etc. 

********************************************************
*   W32/Downadup.gen Removal Tool
********************************************************

To find out if your system(s) are infected and to remove the Conficker/Downadup infection,
F-Secure provides these W32/Downadup.gen Removal Tools.

Please note that F-Secure says the following about the Downadup/Conficker removal tool:

Disinfection

UPDATE

Recent variants of the Downadup worm attempt to block execution of F-Secure malware removal tools. If the downloaded tool does not work, please rename the file. Example: from "f-downadup.exe" to "file.exe" or "explorer.exe". Then try running the tool again.

 


Best Regards,
Marc Deschenes, VACM Editor
The VACM Project at
Automated PC Solutions

 

 

*** Be sure to check out the appendix at the end of this alert
if you are having trouble booting your computer into "Safe Mode".
The process is all spelled out for you there.

 

Why should you be very
concerned about Spyware?
Learn how to avoid Identity Theft and Windows corruption in this
free VACM Video:
     VACM-tested #1 AntiSpyware Software

How did they steal my Identity?

Why do I get so much SPAM ?

Why is your computer
running so slow ?

Today, every PC needs just a few protection softwares. Find out what and why. Visit our Links Page to avoid Indentiry Theft and costly computer repairs.
   VACM Links to Protection Tools and Softwares
Keep your PC Safe and
Avoid a costly trip to the shop...

with these VACM approved tools.

You need 3 things to protect your PC(s) automatically. Use these links to go directly to the Download and Purchase pages:

     

 

 

Old Shotgun Shell Boxes
are collector's items and
worth good money!

 (yes... just the empty boxes)

get your
  ShotShell BlueBook
price guide

now.
 

 

To cancel your subscription to VACM, reply to this email with the word UNSUBSCRIBE in the subject.

If you click on the link below, the "unsubscribe" email will be created for you and you can simply hit "Send" in you email program:

Create My Unsubscribe Email

IMPORTANT: please include the email address at which you are currently receiving VACM Alerts in the body of the message.

 

 

******** APPENDIX - Handy How-To Tips **********


  * How To Boot into Safe Mode

Shut the computer down so that the power is off.

Turn the computer on, wait 1 second and begin pressing the F8 key
on the keyboard, once every second repeatedly. Do this until
the Windows Startup Menu appears. If you get a keyboard
error, press F1 to resume and then continue pressing the
F8 key once every second, or your PC may tell you to press another key for BIOS setup.

Select Safe Mode from the Windows Startup Menu, then press
the Enter key on the keyboard.

Windows will then boot into Safe Mode.
NOTE: This may take longer than a normal boot.

At the end of the boot process a dialog box will appear
informing you that Windows is in Safe Mode. Click OK on this dialog box.

Windows is now in Safe Mode.

If you miss hitting the F8 at the right time, Windows will boot
normally and you will not see the "Safe Mode" message.  In this
case, start from the top of these instructions until you get the
boot menu screen where you can choose "Safe Mode".  This can be
a little tricky the first time you do it.

 

 

 

 

Locations of visitors to this page