Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.IG is the detection for a trojan that connect to certain Web sites to download other malware. This may include other TrojanDownloader:Win32/Renos components, and fake antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.FJ is a trojan that connects to certain Web sites to download other malware. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.GF is a generic detection for a family of trojans that connect to certain websites in order to download other malware. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
Worm:Win32/EyeStye.B is a worm that is downloaded and utilized by Trojan:Win32/EyeStye, and attempts to spread via removable drives.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Chepvil.J is a trojan that attempts to download other malware from a remote server. In the wild, we observed this trojan downloading files detected as Rogue:Win32/Winwebsec, Backdoor:Win32/Cycbot.B and VirTool:Win32/Injector.gen!BG.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Chepvil.I is a trojan that attempts to download other malware from a remote server. In the wild, this trojan was observed to download files detected as Rogue:Win32/Winwebsec, Backdoor:Win32/Cycbot.B and VirTool:Win32/Injector.gen!BG.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.Y is a detection for a trojan that connects to certain websites and downloads other unwanted software and malware, such as Trojan:Win32/FakeSecSen, Trojan:Win32/Bohmini and other Win32/Renos components.
Alert level: severe
Updated on Apr 11, 2011
Trojan:BAT/Downsys.A is a trojan that is dropped by Trojan:Win32/Downsys.A. It usually arrives with the file name "a<5 random digits>.bat". It facilitates the execution of other malware.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Rochap.F is a trojan component dropped and installed by TrojanDropper:Win32/Rochap.F. It connects to a certain Web site to download another malware, which is detected as Trojan:Win32/Rochap.B.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Donise.B is a trojan component of TrojanDownloader:Win32/Donise.A. It drops TrojanDownloader:Win32/Donise.A and another file that may be detected as Trojan:Win32/Lodap!rts.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.LL is a detection for trojans that connect to certain Web sites to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.BAH is a trojan that connects to certain websites to download other malware or adware. This may include other TrojanDownloader:Win32/Renos components, and adware such as Adware:Win32/Mysidesearch and Adware:Win32/AdRotator.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Bamital.G is a trojan component that executes a payload component installed by TrojanDropper:Win32/Bamital.G.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Ilomo.D is a trojan that drops another malware, detected as Trojan:Win32/Ilomo.C, in the system.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Killfiles.AM is a trojan with a destructive, file-deleting payload. In the wild, it has been observed being downloaded onto affected machines by a variant of Backdoor:Win32/MyDoom.gen, which in turn is being installed by Trojan:Win32/Lyzapo - a trojan with two components that cause the affected system to participate in Distributed Denial of Service attacks against remote servers.
 
At the time of publishing, machines affected by Trojan:Win32/Lyzapo have been observed participating in Distributed Denial of Service attacks against US and South Korean owned servers.
Alert level: severe
Updated on Apr 11, 2011
Worm:BAT/Autorun.B is part of a multi-component malware family that propagates by creating copies in drives found in the system.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Delf.M!CME-96 is a user-mode rootkit that hides its own presence on the system, as well as hiding the presence of other malicious software to which it may be associated.
Alert level: severe
Updated on Jan 29, 2007
Trojan:Java/Classloader is a malicious Java applet that exploits a vulnerability in certain unpatched versions of Microsoft virtual machine (Microsoft VM). Details on the vulnerability can be found in Microsoft Security Bulletin MS03-011 at http://www.microsoft.com/technet/security/Bulletin/MS03-011.mspx
Alert level: severe
Updated on Apr 20, 2007
Trojan:HTML/Bankfraud.M is generic detection for email that contains malicious links to known phishing sites. Phishing sites are designed to look like legitimate bank or ecommerce sites. Users who visit these sites and enter their login credentials risk having their credentials exposed to attackers.
Alert level: severe
Updated on Mar 07, 2005
Trojan:Win32/StartPage.TC is a browser-modifying Trojan that targets certain versions of Microsoft Windows and Internet Explorer. The Trojan changes the current Internet Explorer settings, specifying a different Web site as the home page or search page.
Alert level: severe