Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Apr 11, 2011
Trojan:Win32/Vundo.K is a DLL component that installs itself as a Browser Helper Object and generates popup ads on the user's desktop. The component is injected into explorer.exe by its dropper. The ads may pop up as a visible or hidden window. Trojan:Win32/Vundo.K is packed with a modified version of UPX
Alert level: severe
Updated on Oct 06, 2013
Windows Defender Antivirus detects and removes this threat.
 
Win32/Vundo is a multiple-component family of malware that delivers "out of context" pop-up advertisements. Variants of the family may also download and run other files, including malware and adware.

Vundo is often installed as a browser helper object (BHO) without your consent, by other malware.

This family uses advanced defensive and stealth techniques to escape detection and to hinder removal. 

Alert level: high
Updated on May 14, 2010
Trojan:Win32/Virtumonde.gen is a generic detection for a family of programs that deliver 'out of context' pop-up advertisements to the computer on which they are installed. Virtumonde exists on a computer as a dynamic link library (DLL) and may function as a Web Browser Helper Object (BHO). It may connect to a remote Web server to download updates or other arbitrary files, and it may use stealth methods to make it difficult to remove.
Also detected as: Trojan:Win32/Vundo.K(Microsoft)
Alert level: severe
Updated on Apr 11, 2011
Win32/Virtumonde is a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Virtumonde is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Also detected as: Trojan:Win32/Vundo.K(Microsoft)
Alert level: high
Updated on Apr 11, 2011
Trojan:Win32/Vundo.KA is a trojan that injects itself into running processes to avoid detection. It connects to a remote server to send information about the infected computer and to possibly download and execute other files. It also terminates or modifies certain processes that may be related to antispyware programs.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo.KZ is a variant of Win32/Vundo, a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files. Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
 
For more information, please see the Win32/Vundo analysis elsewhere in our encyclopedia.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo.KAT is a trojan that is a member of Win32/Vundo - a multiple-component family of programs that deliver out-of-context pop-up advertisements. They may also download and execute arbitrary files. This family uses advanced defensive and stealth techniques to escape detection and to prevent its removal.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo.KO is a component of Win32/Vundo - a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
 
This particular component is used to download and execute arbitrary files to the affected computer. In the wild, we have observed Trojan:Win32/Vundo.KO downloading and installing additional Vundo components such as Trojan:Win32/Vundo.gen!AT.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo.KM is the detection for a member of the Win32/Vundo family of malware. It creates a connection to the Web site 'antassa.com'. It may also inject code into Internet Explorer, redirect searches, display advertisements, download and run files from a remote server, and send information about the infected system to a remote server.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo.KT is a member of Win32/Vundo - a multiple component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files. Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level: severe
Updated on Jan 06, 2009
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe
Updated on Jan 05, 2009
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe
Updated on Apr 23, 2009
Alert level: severe
Updated on Feb 11, 2009
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe
Updated on Oct 07, 2008
Alert level: severe