 |
|  |
W32.Korgo.F
Posted on Thursday, June 03 @ 04:45:10 PDT by Fido
Due to an increased rate of submissions, Symantec Security Response has upgraded W32.Korgo.F from a Category 2 to a Category 3 as of June 2, 2004.
W32.Korgo.F is a minor variant of W32.Korgo.E. It is a worm that attempts to propagate by exploiting the Microsoft Windows LSASS Buffer Overrun Vulnerability (BID 10108) on TCP port 445. It also listens on TCP ports 113, 3067, and other random ports.
A free removal tool to clean infections of the W32.Korgo.F is available here.
| |
|
Don't have an account yet? You can create one. As a registered user you have some advantages like theme manager, comments configuration and post comments with your name.
|
|
Average Score: 5 Votes: 6

|
|
|
Re: W32.Korgo.F (Score: 1) by Webster (little white dog at websterrf period com) on Thursday, June 03 @ 06:19:01 PDT (User Info | Send a Message | Journal) | | Mmm...LSASS...how could anybody _not_ have this plugged after Sasser? |
|
|
Re: W32.Korgo.F (Score: 1) by Webster (little white dog at websterrf period com) on Thursday, June 03 @ 13:29:15 PDT (User Info | Send a Message | Journal) | | I thought I posted a comment to this this morning? Huhn, weird.<br />
<br /> |
|
|
|
|