Skip to main content
Skip to main content
Microsoft Security Intelligence
22 entries found. Displaying page 1 of 2.
Updated on Oct 07, 2008
Alert level: high
Updated on Sep 05, 2013
Misleading:Win32/Winfixer locates various registry entries, Windows prefetch content, Windows recently accessed files and other types of data, and identifies them as "Privacy Violations". Winfixer then prompts the user to purchase the product in order to remove the alleged 'violations'.
Alert level: high
Updated on Dec 22, 2021
Alert level: high
Updated on Jul 23, 2021
Alert level: severe
Updated on May 25, 2010
TrojanDownloader:Win32/Swizzor.gen is a generic detection for a Trojan that downloads files from remote Web sites, delivers pop-up and contextual advertisements and, depending on the variant, may add Web browser bookmarks, toolbars and search buttons in Internet Explorer.
Alert level: severe
Updated on Sep 26, 2013

This program was detected by definitions prior to 1.159.567.0 as it violated the guidelines by which Microsoft identified unwanted software. Based on analysis using current guidelines, the program does not have unwanted behaviors.

Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:JS/Renos.CW is detection for JavaScript that displays an alert message recommending users download and install a program known as "TrustedAntivirus", detected as Program:Win32/Winfixer.
 
Winfixer is a known rogue antispyware program that may display false detection alerts and insist the user purchase the program in order to remove the detected malware.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/C2Lop.S is a trojan that modifies Web browser settings, adds browser bookmarks, and delivers pop-up advertisements.
Alert level: severe
Updated on Dec 18, 2007
TrojanSpy:Win32/VBStat.E collects details about the system it was executed on and sends those details to a remote IP address hosted in the Netherlands.
Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Axload.A is a trojan that attempts to download unwanted programs from the web site 'winifixer.com'.
Alert level: severe
Updated on Sep 26, 2013

This program was detected by definitions prior to 1.159.567.0 as it violated the guidelines by which Microsoft identified unwanted software. Based on analysis using current guidelines, the program does not have unwanted behaviors.

Alert level: severe
Updated on Apr 11, 2011
TrojanDownloader:Win32/Cbeplay.I is a trojan that downloads additional malware. It is often distributed via spam e-mail, either in an attachment or via a link to the trojan.
Alert level: severe
Updated on Jun 27, 2007
Trojan:Win32/C2Lop.C is a Trojan that adds Web browser bookmarks, downloads files from remote Web sites, and delivers pop-up and contextual advertisements. Trojan:Win32/C2Lop.C is installed by SoftwareBundler:Win32/MessengerPlus.b!installer.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo is a family of malicious software that consists of executables and dynamic link library (DLL) files that deliver 'out of context' pop-up advertisements on the clients’ machines.

Trojan:Win32/Vundo.AF is a DLL component that installs itself as a Browser Helper Object (BHO), and may show pop-up advertisements on the computers in which it is installed.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo is a family of malicious software that consists of executables and dynamic link library (DLL) files that deliver 'out of context' pop-up advertisements on the clients’ machines. Certain variants may come with their own payload or download and execute remote malicious payloads.

Trojan:Win32/Vundo.CK is a DLL component that installs itself as a Browser Helper Object (BHO), and may show pop-up advertisements on the computers in which it is installed.
Alert level: severe
Updated on Dec 18, 2007
Program:Win32/DriveCleaner locates various registry entries, Windows prefetch content, Windows recently accessed files and other types of data, and identifies them as "Privacy Violations". DriveCleaner then prompts the user to purchase the product in order to remove the alleged 'violations'.
Alert level: severe
Updated on Jun 27, 2007
Trojan:Win32/Anomaly.gen has been renamed to Trojan:Win32/C2Lop.C
 
Trojan:Win32/C2Lop.C is a Trojan that adds Web browser bookmarks, downloads files from remote Web sites, and delivers pop-up and contextual advertisements. Trojan:Win32/C2Lop.C is installed by SoftwareBundler:Win32/MessengerPlus.b!installer.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/C2Lop is a trojan that modifies Web browser settings, adds Web browser bookmarks to advertisements, updates itself and delivers pop-up and contextual advertisements. 
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Vundo.X is a trojan that exists as a Browser Helper Object (BHO). Win32/Vundo.X falsely reports problems with the computer, in order to convince users to purchase a promoted product. It may connect to a remote web server to download updates or other arbitrary files, and use stealth methods to make it difficult to remove. 
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/FakeAnts is a rogue security program that displays misleading alerts regarding computer problems or falsely reports detections of malicious files on the affected machine in order to convince users to purchase rogue security software. It may be installed by Trojan:Win32/Renos.D, or manually installed by a computer user.
Alert level: severe