Port No | 139 |
Service Name | Chode |
RFC Doc | 0 |
Protocol | TCP |
Description | This batch file Trojan is more commonly known as the 911 malware. Upon execution, it randomly chooses one of three payloads as follows: Format the infected system's drives C:\ to H:\ Dial the 911 number from the modem of the infected system Copies itself onto the infected system |
Reference Link | Chode Trojan |
Attack | SOLUTION : 1.Check your computer for the existence of the following directories. Delete these when found: C:\progra1\chode C:\progra1\foreskin, Chode 139 C:\progra1\dickhair 2.In your files C:\Windows\StartMenu\Programs\StartUp folder, delete the following files: ASHIELD.PIF NETSTAT.PIF WINSOCK.VBS 3.Scan your system with Trend Micro antivirus and delete all files detected as BAT_FIRKIN.A, PIF_FIRKIN.A, VBS_FIRKIN.A and TROJ_FIRKIN.A. To do this Trend Micro customers must download the latest pattern file and scan their system. Other email users may use HouseCall, Trend Micro's free online virus scanner. |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.