As per the Trend Micro blog, the Conficker worm is finally at work - causing damage by way of fitting the infected computers with a nasty antivirus application called SpywareProtect2009. Coming with the typical scareware strategy of warning about potential threats on the computer, the fake app offers to clean the PC for $49.95.
With the Conficker having hit millions of Windows-based computers on the Internet, experts are worried that the repeated infection alerts appearing on the screen may entice people to click on them and pay for the software just to avoid the infuriating messages, thus ending up furnishing thieves with their credit card information.
The phony antivirus feature – which attempts to install a Trojan downloader – reinforces the hearsay that there is monetary motive behind the malware, without any clandestine intention of interrupting computer or network operations.
Along with being a big money-spinner for online scammers, Conficker is also razing an update for an .E modification, a list of which has been posted on a Microsoft Malware Protection Center blog. The new changes give the worm another chance to spread via MS08-067 Microsoft vulnerability, and further its attempts to stop more current programs as well as block attempts to reach further domains.
Interestingly, the new update has a self-demolition system, whereby it will automatically erase itself after May 3, 2009!











