having a heck of a time with a w32/conficker infection. Seems user brought a hard drive in and hooked it up without asking or checking now we have this.
I have secured the network and users and isolated 2 machines that I'm having the issues with. We run CA's ITM network antivirus for these machines . Its catching the infection and telling me its from
"User: System. Status: File was cured; system cure performed. " Now the user account "system", can i change that passwordwill that stop it? I cleaned the machine and it keeps coming back, all updates and installed and its on a older w2k server