W32.Downadup is a worm that propagates on local and network drives by taking advantage of the Microsoft Windows Server Service RPC Handling Remote Code Execution Vulnerability. W32.Downadup also create its own Service on Windows to run itself each time Windows is started.
Other Alias: Win32/Conficker.A, W32/Downadup.A, Conficker.A, Net-Worm.Win32.Kido.bt
We have a tool from Symantec to remove this virus
How to download and run the tool
Important: You must have administrative rights to run this tool on Windows NT 4.0, Windows 2000, or Windows XP.
Follow these steps to download and run the tool:
1. Download the FixDwndp.exe file from: here.
2. Save the file to a convenient location, such as your Windows desktop.
3. Close all the running programs.
4. If you are on a network or if you have a full-time connection to the Internet, disconnect the computer from the network and the Internet.
5. If you are running Windows Me or XP, turn off System Restore. For instructions on how to turn off System Restore, read your Windows documentation, or one of the following articles:
Locate the file that you just downloaded.
6. Double-click the FixDwndp.exe file to start the removal tool.
7. Click Start to begin the process, and then allow the tool to run.
NOTE: If you have any problems when you run the tool, or it does nor appear to remove the threat, restart the computer in Safe mode and run the tool again.
8. Restart the computer.
9. Run the removal tool again to ensure that the system is clean.
10. If you are running Windows Me/XP, then re enable System Restore.
11. If you are on a network or if you have a full-time connection to the Internet, reconnect the computer to the network or to the Internet connection.
12. Run Live Update to make sure that you are using the most current virus definitions.
When the tool has finished running, you will see a message indicating whether the threat has infected the computer. The tool displays results similar to the following:
* Total number of the scanned files
* Number of deleted files
* Number of repaired files
* Number of terminated viral processes
* Number of fixed registry entries
What the tool does
The Removal Tool does the following:
* Terminates the associated processes
* Deletes the associated files
* Deletes the registry values added by the threat
Source : Karunya Intranet
Monday, March 30, 2009 | 0 Comments
Kaspersky Lab releases technical preview of Kaspersky Anti-Virus for Windows 7
Kaspersky Lab, a leading developer of secure content management systems, announces the release of a technical prototype of Kaspersky Anti-Virus for Windows 7.
Windows 7 is the next release of the Microsoft Windows operating system which will replace Windows Vista and is a step forward in the development of Microsoft operating systems. The new OS will incorporate enhanced reliability, greater efficiency, an improved interface and extended working features both in global and local information networks.
The technical preview is a complex solution for securing computers running under Windows 7. The prototype includes not only an antivirus component but an effective and fully functional firewall and anti-spam filter.
At the heart of the new technical prototype is Kaspersky Lab’s new antivirus engine which is even more effective at detecting malicious programs than its predecessor. The new engine dramatically increases system scanning speed thanks to improved processing of objects and optimized use of system resources, particularly on dual- and quad-core processor platforms. The unique product architecture ensures high productivity and one of the lowest uses of system resources in the industry.
The technical preview includes a highly effective heuristic analyzer. The heuristic analyzer detects and blocks as yet unknown malicious programs. If a program signature is not included in the antivirus databases, i.e., the malicious program is unknown, the heuristic analyzer will safely launch the program in an isolated virtual environment, analyze the program’s actions and conclude with a high degree of probability whether it is potentially harmful before it is launched in a live environment.
In addition, the technical prototype includes a new user interface developed to meet the needs of both inexperienced and advanced users.
Source : Kaspersky Lab
Sunday, March 29, 2009 | 0 Comments
Orkut Binds Google Calender with the friends birthday on a easy click.
If you are a regular Google Calendar user this update is very useful for reminding you, your friends birthdays.
An update from Orkut now allows you to add your Orkut friends birthdays in Google Calendar. You would find a link below the "Upcoming "Birthdays" section. Just click it and add.
Just noticed on Orkut’s upcoming birthday section a link saying - “view your friends’ birthdays in Google Calendar”
There are few advantages of this integration because Google Calender
1. Can send birthday reminder via SMS/Email
2. Can be synced with other services/softwares like outlook on Windows, iCal on Mac, etc.
3. Have official API which can be used to develop third-party applications
There may be more to it! Let us know, if you can figure it out!
Monday, March 16, 2009 | 0 Comments
Google just started to release a preview of Google Voice, an application that helps you better manage your voice communications. Google Voice will be available initially to existing users of GrandCentral, a service we acquired in July of 2007.Google Voice is currently open only for GrandCentral users. Learn More
The new application improves the way you use your phone. You can get transcripts of your voicemail (see the video below) and archive and search all of the SMS text messages you send and receive. You can also use the service to make low-priced international calls and easily access Goog-411 directory assistance.
Check out the features page for videos and more information on how these features work.
Thursday, March 12, 2009 | 0 Comments
Analysis of IMEI numbers
All mobile phones are assigned a unique 15 digit IMEI code upon production. Below you can check all known information regarding manufacturer, model type, and country of approval of a handset.
Tip! The IMEI can be displayed on most mobile handsets by dialling *#06#. Otherwise check the compliance plate under the battery.
Sunday, March 08, 2009 | 0 Comments
The International Mobile Equipment Identity or IMEI is a number unique to every GSM and WCDMA mobile phone as well as some satellite phones. It is usually found printed on the phone underneath the battery. It can be found by typing *#06# on a handset.
The IMEI number is used by the GSM network to identify valid devices and therefore can be used to stop a stolen phone from accessing the network.
If a mobile phone is stolen, the owner can call his or her network provider and instruct them to "ban" the phone using its IMEI number. This renders the phone useless, whether or not the phone's SIM is changed.
Cyber crime experts explains that, Chinese phones comes without Bill and Warranty, and are pirated, without being equipped with IMEI number, which are helpful for tracing mobiles. As these phones are not equipped with IMEI number, they can easily be used by anti-social elements, proving dangerous to the Nation’s security.
To, those who already have a Chinese handset, do not panic, just wait till any such official notification is out by TRAI or DoT.
Sunday, March 08, 2009 | 0 Comments
Way2SMS offers Email to SMS,a unique feature for free,get Yourname@way2sms.com. Email alerts on mobile. Its free.Get SMS alerts on your mobile phone as and when the new mail arrives.You'll receive only alerts for the emails you want, when you want them.Notify recipients on their mobile while sending an email.Access Yahoo and Gmail accounts right inside way2sms.Get instant free mail alerts on mobile for your Yahoo, Gmail accounts.
1) Get Registered with way2sms (SMS conformation)
2) Choose your own email Yourname@way2sms.com
3) Activate Mail Alerts [Follow 1 to 4 clicks as in Sample picture]
4) Go to your mail settings
5) Be updated on New mail and Enjoy..
Friday, March 06, 2009 | 0 Comments
Wednesday, March 04, 2009 | 0 Comments