Discovered: February 13, 2004
Updated: February 13, 2007 12:19:00 PM
Type: Trojan Horse
Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP
This is a detection for exploits of a Microsoft Internet Explorer vulnerability, so it therefore does not need to be removed in the same manner as a virus or worm.
It is important that you apply the patch for the vulnerability as described in
Microsoft Security Bulletin MS04-013. Once patched, the system is no longer be vulnerable to the exploit.
If the exploit has run on your system, it is possible that some HTML files remain on the infected computer, even after the system was patched against the vulnerability.
The most likely place to find such files are the Internet Explorer Temporary Internet Files and cookies. If you are still getting detections after applying the patch, the files should be deleted. See the Additional Information section for instructions.
Writeup By: Frederic Perriot