CIO  |  IT Security & Policy  |  LONI  |  LOUIS  |  UIS  |  UNI  |  USS  |  MDAC  |  Moodle
IT Security & Policy
Virus Threat: W32/Conficker.Worm 'Downadup'

University IT security professionals have received reports of a fast spreading worm called 'W32/Conficker.Worm'(also known as 'Downadup'). This worm propagates by exploiting a known vulnerability in Microsoft's Server Service that allows for remote code execution (Microsoft Security Bulletin MS08-067). The vulnerability exists in ALL versions of NT-based Windows operating systems (Windows 2000, XP, Server 2003, Vista, Server 2008).

Please make sure that your servers and workstations are patched. You will need to restart in order for the patch to be applied. The worm also propagates by copying itself from the infected computer to USB thumb drives and network shares. Also make sure that your workstations and servers have the latest anti-virus software and definitions. Microsoft Malicious Software removal tool also detects this worm. The LSU IT Security Group is monitoring this situation and will be providing more information as it becomes available.

Additional Information: Microsoft Security Bulletin MS08-067 - Critical
http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx