23 March 2009

Conflicker viral outbreaks

Recently I have assisted several customers in the removal of the Conflicker virus. The cases was very different, but they all got the virus due to two fundamental flaws: poor patch level and no working anti-virus.

The removal took quite some time in all cases, and most time where spent getting a better infrastructure in place. This particular virus can be tricky to remove completely, but now there are several good tools available for the job.

If anybody cares, I'll post my technical step-by-step removal procedures. Leave a comment if that sort of thing tickles your fancy.

In short the solution ended up being deploying WSUS to force patch deployment and a proper install of Trend Micro OfficeScan to remove the viruses. Oh, and I also implemented some GPOs to curb the virus outbreak.

Why some system administrators choose not to run WSUS, SCCM or similar tools is beyond me...

So... finally it has come to this

Today while at a conference, my friend and colleague Frode talked me into making a blog for my technical discoveries. I do this only after great deliberations, and if I don't like this fancy blogging-malarky the blog might suddenly disappear into oblivion from whence it came. Perhaps I should start using twitter instead?