Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Apr 11, 2011
Virus:Win32/Ramnit.gen!B is a generic detection for a virus that infects Windows executable files and HTML files, and spreads to removable drives. The virus attempts to open a backdoor and wait for instructions.
Alert level: severe
Updated on Apr 11, 2011
Virus:VBS/Ramnit.D is a detection for a malicious VBScript appended to HTML files by a variant of Virus:Win32/Ramnit. When an infected HTML file is opened, Virus:VBS/Ramnit.D drops and runs a copy of either Trojan:Win32/Ramnit or Trojan:Win32/Ramnit.gen!A.
Alert level: severe
Updated on Aug 01, 2011

Virus:Win32/Ramnit.AC is the detection for files infected by variants of the Win32/Ramnit malware family. This malware drops and loads other malware, which may be detected as Trojan:Win32/Ramnit.D.

Alert level: severe
Updated on Sep 14, 2011

Virus:Win32/Ramnit.AE is a detection for files infected by variants of the Win32/Ramnit malware family. This malware drops and loads other malware, which may be detected as Trojan:Win32/Ramnit.D.

Alert level: severe
Updated on Sep 14, 2011

Virus:Win32/Ramnit.AD is a detection for files infected by variants of the Win32/Ramnit malware family. This malware drops and loads other malware, which may be detected as Trojan:Win32/Ramnit.D.

Alert level: severe
Updated on Apr 03, 2014

Virus:Win32/Ramnit.Z is a virus that infects Windows executable (program) files, Microsoft Office files and HTML files. This malware drops and runs other malware, which may be detected as Trojan:Win32/Ramnit.

Virus:Win32/Ramnit.Z is a member of the Win32/Ramnit family.

Alert level: severe
Updated on Jan 03, 2012

Virus:VBS/Ramnit.F is the detection for Visual Basic script appended to HTML document files by variants of Virus:VBS/Ramnit. When the infected HTML document is opened, Virus:VBS/Ramnit.F drops and executes Trojan:Win32/Ramnit.A.

Alert level: severe
Updated on Nov 01, 2007
Trojan:JS/Psyme.AD exploits publicly published vulnerabilities via the Web browser Internet Explorer to execute malicious JavaScript. This malicious JavaScript is commonly used to download and execute other malware onto the system. 
Alert level: severe
Updated on May 22, 2007
Trojan:Win32/VB.KB drops files to the Windows folder, modifies the registry to load these files when Windows is started, and sends an HTTP GET request to a remote Web site.
Alert level: severe
Updated on Jun 05, 2007
Trojan:Win32/Cinmeng displays pop-up advertisements and attempts to download files from a remote Web site. The Trojan is typically included as a component in other third-party programs.
Alert level: high
Updated on Apr 11, 2011
Trojan:Java/Classloader.G is a malicious Java applet that can infect Microsoft Windows computers that are not patched with Microsoft Security Update MS03-011. An attacker can insert the Java applet into HTML code and host the code on a Web server or send the code in e-mail. When a user opens the Web page or e-mail, the vulnerability allows the applet to bypass a security check on the computer. The applet can then run malicious code on the computer and open a backdoor to receive commands from attackers.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Apropos.B.dr is a Trojan dropper. It installs Trojan:Win32/Apropos.B and rootkit VirTool:WinNT/Zufyx.A to computers running Microsoft Windows. The Trojan dropper then runs Trojan:Win32/Apropos.B. The rootkit hides Trojan:Win32/Apropos.B from the user. 
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Adclicker.AJ is a Trojan that installs itself as a Browser Helper Object in order to redirect user web browsing to particular advertising or search sites.
Alert level: severe
Updated on Feb 07, 2007
Adbehavior software displays advertisements in pop-up windows on the desktop. In order to target advertisements to the current user, the software may install a browser helper object (BHO) to monitor search terms that the user enters in certain Web search engines. The software may terminate the anti-spyware process gcasserv.exe, and may download and install software without notifying the user.
Alert level: severe
Updated on Feb 08, 2007
Trojan:Win32/Alemod.C.dll is a data-stealing Trojan that is installed by Trojan dropper Trojan:Win32/Alemod.C.dr. For more information, please refer to the entry for Trojan:Win32/Alemod.C.dr at http://www.microsoft.com/security/encyclopedia/details.aspx?Name=Trojan:Win32/Alemod.C.dr
Alert level: severe
Updated on Mar 07, 2005
Trojan:Win32/StartPage.BB is a browser-modifying Trojan that targets certain versions of Microsoft Windows and Internet Explorer. The Trojan redirects Web page searches to a specific URL.
Alert level: severe
Updated on Mar 07, 2005
Trojan:Win32/Pakes.C is a Trojan that is dropped by Win32/Bropia.G.worm. The Trojan collects system information from a target computer and sends it to a remote server. For more information, see Win32/Bropia.G.worm.
Alert level: severe
Updated on May 17, 2010
Win32/Vxidl.gen!B detection is heuristic detection for specifically obfuscated encrypted malware. This technique is commonly seen in the Win32/Nuwar.N@MM!CME-711 worm.
 
Alert level: severe
Updated on Mar 25, 2007
Trojan:Win32/Adclicker.K is a Trojan that displays advertisements on the computer and has the effect of clicking the advertisements automatically, without user interaction. It can also connect to a remote server to download other adware or malicious software.
Alert level: severe
Updated on Jul 14, 2006
Trojan:Win32/Alemod.E is a data-stealing Trojan that is installed by Trojan dropper Trojan:Win32/Alemod.E.dr. For more information, see the encyclopedia entry for Win32/Alemod at http://www.microsoft.com/security/encyclopedia/details.aspx?Name=Win32/Alemod
Alert level: severe