Remove Blaster Worm. Description and removal instructions

 
Title: Blaster Worm
Also known as: W32.Blaster.Worm Msblast.A
Type: Worms
Severity scale:Blaster Worm severity is 69  (69 / 100)
 
The worm attempts to perform a Denial of Service (DoS) on the Microsoft Windows Update Web server (windowsupdate.com). This is an attempt to prevent you from applying a patch on your computer against the DCOM RPC vulnerability. W32.Blaster.Worm is a worm that exploits the DCOM RPC vulnerability (described in Microsoft Security Bulletin MS03-026) using TCP port 135. This worm attempts to download the msblast.exe file to the windowssystem32 directory and then execute it.


Blaster Worm properties:
• Connects itself to the internet
• Hides from the user
• Stays resident in background

Automatic Blaster Worm removal:

remover for Blaster Worm

Blaster Worm manual removal:

Symantec Security Response has developed a removal tool to clean the W32.Blaster.Worm infections. The W32.Blaster.Worm Removal Tool does the following: Terminates the W32.Blaster.Worm viral processes. Deletes the W32.Blaster.Worm files. Deletes the dropped files. Deletes the registry values that the worm added. This tool does not protect from infection, but is intended to clean a system that has been previously infected with W32.Blaster.Worm.

Other programs to remove Blaster Worm:

• SUPERAntiSpyware - Review - Download
• CounterSpy - Review - Download
• Windows Defender - Review - Download

Information added: 19/03/04
Information updated: 09/08/06

Additional resources related to Blaster Worm:

Attention: If you know or you have a website or page about Blaster Worm removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about Blaster Worm parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:


Comments from visitors:


1. help by Guest. 2005-07-23 18:07:48
cant get online, at home

2. thanks by Guest. 2004-08-18 22:08:23
there is some thing wrong with yours, but I should say thank you very much for your information...

3. by Neo. 2004-03-03 21:49:37
Block access to TCP port 4444 at the firewall level, and then block the following ports, if they do not use the applications listed:

TCP Port 135, 'DCOM RPC'
UDP Port 69, 'TFTP'

The worm also attempts to perform a Denial of Service (DoS) on the Microsoft Windows Update Web server (www.windowsupdate.com). This is an attempt to prevent you from applying a patch on your computer against the DCOM RPC vulnerability.


Latest spyware news:
Similar parasites: