Skip to main content
Skip to main content
Microsoft Security Intelligence
20 entries found.
Updated on Jun 11, 2012

Win32/Cleaman is a family of multi-component, obfuscated trojans that are distributed via drive-by exploit kits. Its main purpose is to redirect Bing, Google, and Yahoo search results to bogus webpages that serve advertisements, adware programs, and malware.

Alert level: severe
Updated on Nov 22, 2016
Alert level: severe
Updated on Dec 27, 2011
Trojan:Win32/Cleaman.G is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected computer.
Alert level: severe
Updated on Nov 22, 2011
Trojan:Win32/Cleaman.B is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected computer.
Alert level: severe
Updated on Nov 22, 2011
Trojan:Win32/Cleaman.D is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected computer.
Alert level: severe
Updated on Nov 22, 2011
Trojan:Win32/Cleaman.E is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected computer.
Alert level: severe
Updated on Nov 28, 2011
Alert level: severe
Updated on Apr 28, 2011
Alert level: severe
Updated on Apr 28, 2011
Alert level: severe
Updated on May 10, 2011
Alert level: severe
Updated on Aug 11, 2011
Alert level: severe
Updated on Oct 11, 2011
Alert level: severe
Updated on Nov 14, 2011
Alert level: severe
Updated on Feb 08, 2012
Alert level: severe
Updated on Feb 08, 2012
Alert level: severe
Updated on Sep 06, 2019
Alert level: severe
Updated on Feb 17, 2022
Alert level: severe
Updated on Jan 24, 2012
TrojanDownloader:Win32/Cred.B is a trojan that silently downloads and installs other programs without consent. This could include the installation of additional malware or malware components to an affected computer.
Alert level: severe
Updated on Jul 17, 2012

Trojan:Win32/Waprox is a trojan that connects to certain servers to receive commands from a remote attacker.

Alert level: severe
Updated on Aug 21, 2014

Windows Defender detects and removes this threat.

This family of malware can do the following:

  • Change your browser settings
  • Download and run files, including other malware

It spreads through software bundlers and download managers, like GoPlayer Download Manager, that advertise free software or games.

Alert level: severe