Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on May 30, 2011
TrojanDownloader:Win32/Renos.PT is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
The Win32/Renos family automatically downloads unwanted software such as SpySheriff, SpyAxe, SpyFalcon, SpyDawn, SpywareStrike, and other similarly named programs. These programs typically present erroneous warnings claiming the system is infected with spyware and offer to remove the alleged spyware for a fee. In some cases, the programs may also cause system instability.
Alert level: high
Updated on May 25, 2010
Win32/Renos.gen!AS is a family of Trojan downloaders that display fake warning messages indicating that spyware or malware has been detected on the machine before downloading rogue security products, most notably Program:Win32/Antivirusxp. Win32/Renos.gen!AS has been distributed via spam messages.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.KB is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.LN is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.v
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.NS is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Rogue:Win32/FakeSecSen or Rogue:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.AY a generic detection for a component of certain variants of TrojanDownloader:Win32/Renos, a family of trojan downloaders that automatically download unwanted software such as SpySheriff, SpyAxe, SpyFalcon, SpyDawn, SpywareStrike, and other similarly named programs. These programs typically present erroneous warnings claiming the system is infected with spyware and offer to remove the alleged spyware for a fee. In some cases, the programs may also cause system instability.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Renos.I is a rogue security program that displays misleading alerts attempting to lure users into purchasing rogue security software.
Alert level: severe
Updated on Jul 14, 2008
Trojan:Win32/Renos.A is a rogue security program that displays misleading alerts attempting to scare users into purchasing additional rogue security software.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.IF is a trojan that displays pop-ups, dialogs and balloons in an attempt to persuade the user to download and install a fake antimalware scanner. At the time of publication, this fake scanner was detected as Trojan:Win32/FakeRemoc.
 
Special Note:
Reports of Rogue Antivirus programs have been more prevalent as of late.  These are programs that generate misleading alerts and false detections in order to convince users to purchase illegitimate security software.  Some of these programs may display product names or logos in an apparently unlawful attempt to impersonate Microsoft products. 
 
Use Microsoft Windows Defender, the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742), or another up-to-date scanning and removal tool to detect and remove these threats and other unwanted software from your computer. For more information on Microsoft security products, see http://www.microsoft.com/protect/products/computer/default.mspx.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.IM is a trojan that connects to a remote server to download other malware. It may also act as a trojan clicker.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.IO is a generic detection for a family of trojans that connect to certain websites in order to download other malware. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
 
 
Note: Reports of Rogue Antivirus programs have been more prevalent as of late.  These are programs that generate misleading alerts and false detections in order to convince users to purchase illegitimate security software.  Some of these programs may display product names or logos in an apparently unlawful attempt to impersonate Microsoft products. 
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.JG is a detection for a trojan that connects to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.LR is an executable that downloads files from a specific Web site.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.NN is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Rogue:Win32/FakeSecSen or Rogue:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.PM is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Rogue:Win32/FakeSecSen or Rogue:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Renos.G is a rogue security program that displays misleading alerts attempting to lure users into purchasing rogue security software.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.BAH is a trojan that connects to certain websites to download other malware or adware. This may include other TrojanDownloader:Win32/Renos components, and adware such as Adware:Win32/Mysidesearch and Adware:Win32/AdRotator.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.DY is a variant of Win32/Renos, a family of trojan downloaders that automatically download unwanted software such as SpySheriff, SpyAxe, SpyFalcon, SpyDawn, SpywareStrike, and other similarly named programs. These programs typically present erroneous warnings claiming the system is infected with spyware and offer to remove the alleged spyware for a fee. In some cases, the programs may also cause system instability.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.HS is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe