W32.Korgo.D is a minor variant of W32.Korgo.C
. This worm propagates by exploiting the LSASS vulnerability on TCP port 445 (as described in Microsoft Security Bulletin MS04-011
) and opens a backdoor on TCP ports 113 and 3067.
Definitions dated before May 31, 2004 may detect this threat as "Bloodhound.Packed."
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.