Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.IG is the detection for a trojan that connect to certain Web sites to download other malware. This may include other TrojanDownloader:Win32/Renos components, and fake antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.FJ is a trojan that connects to certain Web sites to download other malware. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.GF is a generic detection for a family of trojans that connect to certain websites in order to download other malware. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
Worm:Win32/EyeStye.B is a worm that is downloaded and utilized by Trojan:Win32/EyeStye, and attempts to spread via removable drives.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Chepvil.J is a trojan that attempts to download other malware from a remote server. In the wild, we observed this trojan downloading files detected as Rogue:Win32/Winwebsec, Backdoor:Win32/Cycbot.B and VirTool:Win32/Injector.gen!BG.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Chepvil.I is a trojan that attempts to download other malware from a remote server. In the wild, this trojan was observed to download files detected as Rogue:Win32/Winwebsec, Backdoor:Win32/Cycbot.B and VirTool:Win32/Injector.gen!BG.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.Y is a detection for a trojan that connects to certain websites and downloads other unwanted software and malware, such as Trojan:Win32/FakeSecSen, Trojan:Win32/Bohmini and other Win32/Renos components.
Alert level: severe
Updated on Apr 11, 2011
Trojan:BAT/Downsys.A is a trojan that is dropped by Trojan:Win32/Downsys.A. It usually arrives with the file name "a<5 random digits>.bat". It facilitates the execution of other malware.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Rochap.F is a trojan component dropped and installed by TrojanDropper:Win32/Rochap.F. It connects to a certain Web site to download another malware, which is detected as Trojan:Win32/Rochap.B.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Donise.B is a trojan component of TrojanDownloader:Win32/Donise.A. It drops TrojanDownloader:Win32/Donise.A and another file that may be detected as Trojan:Win32/Lodap!rts.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.LL is a detection for trojans that connect to certain Web sites to download arbitrary files. This may include other TrojanDownloader:Win32/Renos components, and rogue antivirus software such as Trojan:Win32/FakeSecSen or Trojan:Win32/FakeXPA.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Renos.BAH is a trojan that connects to certain websites to download other malware or adware. This may include other TrojanDownloader:Win32/Renos components, and adware such as Adware:Win32/Mysidesearch and Adware:Win32/AdRotator.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Bamital.G is a trojan component that executes a payload component installed by TrojanDropper:Win32/Bamital.G.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Ilomo.D is a trojan that drops another malware, detected as Trojan:Win32/Ilomo.C, in the system.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Killfiles.AM is a trojan with a destructive, file-deleting payload. In the wild, it has been observed being downloaded onto affected machines by a variant of Backdoor:Win32/MyDoom.gen, which in turn is being installed by Trojan:Win32/Lyzapo - a trojan with two components that cause the affected system to participate in Distributed Denial of Service attacks against remote servers.
 
At the time of publishing, machines affected by Trojan:Win32/Lyzapo have been observed participating in Distributed Denial of Service attacks against US and South Korean owned servers.
Alert level: severe
Updated on Apr 11, 2011
Worm:BAT/Autorun.B is part of a multi-component malware family that propagates by creating copies in drives found in the system.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Delf.M!CME-96 is a user-mode rootkit that hides its own presence on the system, as well as hiding the presence of other malicious software to which it may be associated.
Alert level: severe
Updated on Mar 07, 2005
Trojan:Win32/StartPage.TC is a browser-modifying Trojan that targets certain versions of Microsoft Windows and Internet Explorer. The Trojan changes the current Internet Explorer settings, specifying a different Web site as the home page or search page.
Alert level: severe
Updated on Apr 26, 2005
Trojan:Win32/Goweh.C is a Trojan that alters several settings in Internet Explorer. It changes the home page and redirects search queries and traffic to other Web pages. Win32/Goweh.C is usually installed on a computer by another Trojan dropper or downloader.
Alert level: severe
Updated on Jan 29, 2007
Trojan:Java/Classloader is a malicious Java applet that exploits a vulnerability in certain unpatched versions of Microsoft virtual machine (Microsoft VM). Details on the vulnerability can be found in Microsoft Security Bulletin MS03-011 at http://www.microsoft.com/technet/security/Bulletin/MS03-011.mspx
Alert level: severe