W32.Korgo.D
| Discovered on: May 30, 2004
Description: W32.Korgo.D is a minor variant of
W32.Korgo.C. This worm propagates by exploiting the LSASS vulnerability on
TCP port 445 (as described in Microsoft
Security Bulletin MS04-011) and opens a backdoor on TCP ports 113 and
3067.
Removal Instructions For Symantec & Norton Users:
- Disable System Restore (Windows Me/XP).
- Update the virus definitions.
- Restart the computer in Safe mode or VGA mode.
- Run a full system scan and delete all the files detected as
W32.Korgo.D.
- Reverse the changes made to the registry.
|
| |
|
Our
Staff Recommends
 
|
Top
Ranked Software for Anti-Virus,
Spyware, Firewall,
Adware
Remover and everything else for software.
I
Warned You - Software and Computer Protection
 
|