Overview: W32.Lecna.A is a worm that spreads by exploiting the Microsoft Windows Local Security Authority Service Remote Buffer Overflow (as described in Microsoft Security Bulletin MS04-011). The worm opens a back door, downloads remote files, and uses a rootkit to hide its presence on the compromised computer.

Category: Worm

Risk Level: Medium

Related Files and Process:

  • %System%\iexplore.exe
  • %System%\drivers\MiniPCI.sys (A rootkit component)
  • %Windir%\DriverNum.dat

View User’s Removal Procedure Below

View Complete Information and Removal : Click Here

Source: Symantec