April 1 Conficker Virus 2
..
BOOL disable_security_services_and_terminate_conficker_cleaners()
|
Also these processes are immediately terminated by C's process monitoring thread whenever they are discovered running on the victim computer. These were tools seen as treat to its existence in the victims host computer. Seems these virus was protecting itself.
- autoruns - malware removal tool
- avenger - antivirus / firewall
- confick - cleanup utilities
- downad - cleanup utilities
- filemon - security utility)
- gmer - rootkit detector and remover (gmer.net)
- hotfix - security patch or removal tools
- kb890 - Microsoft patch
- kb958 - Microsoft patch
- kido - security patch or removal tools
- klwk - Karspersky malware removal tool
- mbsa. - Microsoft Baseline Security Analyser
- mrt - Microsoft malware removal tool
- mrtstub - Microsoft malware removal tool
- ms08-06 - Microsoft patch
- procexp - process explorer
- procmon - process monitor
- regmon - registry monitor
- scct_ - unknown
- sysclean - Trend Micro malware removal tool
- tcpview - network packet analysis tool
- unlocker - file unlocking utility
- wireshark - network packet analysis tool