Skip to main content
Skip to main content
Published Jan 17, 2007 | Updated Apr 16, 2011

Win32/Reatle.A@mm

Detected by Microsoft Defender Antivirus

Aliases: Win32/Reatle.A (CA) Net-Worm.Win32.Lebreat.c (Kaspersky) W32/Reatle.gen@MM (McAfee) W32/Breatel.A (Norman) W32/Lebreat-C (Sophos) WORM_REATLE.B (Trend Micro)

Summary

Win32/Reatle.A@mm  is a mass-mailing e-email and network worm that exploits the Windows LSASS vulnerability described in Microsoft Security Bulletin MS04-011. Win32/Reatle.A@mm also downloads and runs a file from a URL specified in the worm's code.
Attempting manual removal of Win32/Reatle.A@mm is not recommended. To detect and remove this worm, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx
Follow us