Skip to main content
Skip to main content
Microsoft Security Intelligence
10 entries found.
Updated on Dec 18, 2007
Program:Win32/DriveCleaner locates various registry entries, Windows prefetch content, Windows recently accessed files and other types of data, and identifies them as "Privacy Violations". DriveCleaner then prompts the user to purchase the product in order to remove the alleged 'violations'.
Alert level: severe
Updated on Sep 05, 2013
Misleading:Win32/Winfixer locates various registry entries, Windows prefetch content, Windows recently accessed files and other types of data, and identifies them as "Privacy Violations". Winfixer then prompts the user to purchase the product in order to remove the alleged 'violations'.
Also detected as: Program:Win32/DriveCleaner(other)
Alert level: high
Updated on May 25, 2010
TrojanDownloader:Win32/Swizzor.gen is a generic detection for a Trojan that downloads files from remote Web sites, delivers pop-up and contextual advertisements and, depending on the variant, may add Web browser bookmarks, toolbars and search buttons in Internet Explorer.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/C2Lop.S is a trojan that modifies Web browser settings, adds browser bookmarks, and delivers pop-up advertisements.
Alert level: severe
Updated on Dec 18, 2007
TrojanSpy:Win32/VBStat.E collects details about the system it was executed on and sends those details to a remote IP address hosted in the Netherlands.
Alert level: severe
Updated on Dec 18, 2007
BrowserModifier:Win32/Toolbar888 is a Web browser toolbar that may be bundled with other unwanted software, or may be installed without user consent. BrowserModifier:Win32/Toolbar888 may download and install updates or other unwanted software.
Alert level: high
Updated on Apr 11, 2011
Trojan:Win32/Vundo is a family of malicious software that consists of executables and dynamic link library (DLL) files that deliver 'out of context' pop-up advertisements on the clients’ machines. Certain variants may come with their own payload or download and execute remote malicious payloads.

Trojan:Win32/Vundo.CK is a DLL component that installs itself as a Browser Helper Object (BHO), and may show pop-up advertisements on the computers in which it is installed.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo is a family of malicious software that consists of executables and dynamic link library (DLL) files that deliver 'out of context' pop-up advertisements on the clients’ machines.

Trojan:Win32/Vundo.AF is a DLL component that installs itself as a Browser Helper Object (BHO), and may show pop-up advertisements on the computers in which it is installed.
Alert level: severe
Updated on Apr 11, 2011
Win32/Virtumonde is a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Virtumonde is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level: high
Updated on Oct 06, 2013
Windows Defender Antivirus detects and removes this threat.
 
Win32/Vundo is a multiple-component family of malware that delivers "out of context" pop-up advertisements. Variants of the family may also download and run other files, including malware and adware.

Vundo is often installed as a browser helper object (BHO) without your consent, by other malware.

This family uses advanced defensive and stealth techniques to escape detection and to hinder removal. 

Alert level: high