Tool Scan For Conficker infected :
1.McAfee Conficker Detection Tool
Size: 176128 bytes
File Version: 1, 0, 8, 0
Modified: Tuesday, April 21, 2009, 10:55:00 AM
McAfee has developed this free utility to help identify systems infected with
W32/Conficker.worm. The detection technique employed by the tool relies on
TCP port 445 being open. If this port is firewalled or blocked in any way,
then the presence of Conficker may not be detected and no result will be shown
for the system in question.
A tested system can be in 1 or 3 states depending on the display options
* Not infected
No trace of Conficker was found.
The system is determined to be infected with Conficker.
* Possibly INFECTED
We have detected evidence that suggests the presence of
Conficker.E. Since there is a slight chance that this method could produce
a false positive result we err on the side of caution and do not claim it
to be definitely infected. Examine the machine in question to confirm.
If the scanned systems do not have TCP port 445 open and available for
connecting to, or you have chosen the "Ping before checking" option and no
ping response is received, no results (neither "Infected", "Not infected" nor
"Possibly infected") will be shown for the system in question. If you enable
the "Show non-responding systems" option, "Not tested" will be shown in this
Please be aware of a limitation in Microsoft Windows XP and Vista operating
systems. Microsoft has established a restriction in these versions that
limits the number of concurrent outbound TCP connections to 10 for which there
is no supported workaround. It is highly advisable to run the tool on a
server class operating system, such as Windows Server 2003, for improved
performance and accuracy. The tool attempts to detect when you are running on
one of these affected operating systems and reduces the maximum allowed
concurrent checks selection and enables the "Ping before checking" option in
an effort to reduce the chances of the scan hitting this limitation.
Note that this tool does not attempt to detect the underlying vulnerability
(MS08-067) due to the fact that current remote detection techniques have
proven to be dangerous and can cause target machines to crash. A proven, safe
mechanism relies on credentials. For more information, refer to McAfee
Vulnerability Manager (formerly Foundstone).
W32/Conficker.worm exploits the MS08-067 vulnerability in Microsoft Windows
Server Service. If the vulnerability is successfully exploited, it could
allow remote code execution when file sharing is enabled. Machines should be
patched and rebooted to clean the system, then rebooted again to prevent
Be sure to check our website for updates to this tool.
Credit: The McAfee team would like to thank Felix Leder and Tillmann Werner,
whose original research is the basis for this utility.
Please submit all questions, comments, and inquiries regarding McAfee free
tools via email only: firstname.lastname@example.org. Although McAfee does not offer
technical or customer support for these tools, your feedback and bug reporting
Downlod Tool in Here : McAfee Conficker Detection Tool
Beberapa Tool dibawah ini adalah salah satu dari sekian banyak tool pembasmi virus conficker/downadup/kido :
01. Download Here : Conficker Removal Tools
02. Download Here : f-downadup
03. Download Here : bd rem tool
04. Download Here : Fix Downadup
05. Download Here : clean conficker
06. Download Here : EConficker Remover
07. Download Here : osoft Windows Malicious Software Removal ToolKB890830
08. Download Here : Stinger Coficker
09. Download Here : KKiller v3.4.3
10. Download Here : cf remover