A good worm?!
Although it may be doing some good things such as downloading the patches from Msft (which should've already been done - you should always keep your system patched as soon as Msft makes the patches available)...but it's considered 'malware' and it has backdoor capabilities...which is never a good thing.
It listens to random ports and sends SYN packets to various locations in order to notify those locations that a specific port in the system is already open. When the remote location receives this information, the said remote location may already connect to the infected system. This makes the system vulnerable to malicious attack.
This might help in its removal...and
here.