CRC32: 2DE6D56B
MD5: 4C25AF364307D0EC71B407F39CAEC148
SHA-1: 4DB457C6F98411388F5AED04ACF4B47BDAE5B450
===================================================
The files created by this worm
c:\lcw.exe
c:\autorun.inf
%Temp%\cvasds0.dll
%Temp%\cvasds1.dll
%Temp%\herss.exe
The file deleted by this worm
C:\Windows\System32\drivers\cdaudio.sys
That is what we could gather about this variation of Win32 Taterf/ Gammima worm. If you need step by step removal instructions you can find them on this link
MD5: 4C25AF364307D0EC71B407F39CAEC148
SHA-1: 4DB457C6F98411388F5AED04ACF4B47BDAE5B450
===================================================
The files created by this worm
c:\lcw.exe
c:\autorun.inf
%Temp%\cvasds0.dll
%Temp%\cvasds1.dll
%Temp%\herss.exe
The file deleted by this worm
C:\Windows\System32\drivers\cdaudio.sys
That is what we could gather about this variation of Win32 Taterf/ Gammima worm. If you need step by step removal instructions you can find them on this link
