Skip to main content
Skip to main content
Microsoft Security Intelligence
28 entries found. Displaying page 1 of 2.
Updated on Oct 20, 2014

Windows Defender detects and removes this threat.

This threat has been renamed to Ransom:Win32/Crilock.A.

Alert level: severe
Updated on Oct 19, 2014

Microsoft security software detects and removes this family of threats.

This ransomware family encrypts your files and shows you a webpage that asks you to pay a fee to unlock them.

They can be installed on your PC  by other malware, such as TrojanDownloader:Win32/Upatre and PWS:Win32/Zbot.gen!GO. It can also spread through infected removable drives, such as USB flash drives. 

You can read more about this type of threat on our Ransomware page.

Alert level: severe
Updated on Aug 13, 2014

Windows Defender detects and removes this threat.

Worm:MSIL/Crilock.A can pose as a software update or an activator for paid software like TeamViewer, Photoshop, ESET antivirus, and Windows Office. It spreads to other PCs via removable drives.

It encrypts your files and asks you to pay a ransom to retrieve the. It asks you to pay using Bitcoin within 72 hours.

Alert level: severe
Updated on Aug 13, 2014

Windows Defender detects and removes this threat.

This threat encrypts your files and displays a webpage that asks you to pay a fee to unlock them.

More information on this type of threat in the Ransom:Win32/Crilock.A description and in our Ransomware page.

Find out ways that malware can get on your PC.  

Alert level: severe
Updated on Apr 05, 2017

Microsoft Defender Antivirus detects this threat.

This detection is used to monitor suspicious or malware-like behavior on your PC. It is a generic detection, which means the malicious behaviors can greatly vary.

If we receive a significant number of reports about this suspicious behavior, we will add a specific detection and include a more detailed analysis.

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Oct 16, 2014

Microsoft security software detects and removes this family of threats.

This ransomware family encrypts your files and shows you a webpage that asks you to pay a fee to unlock them.

See the Win32/Crilock family description for more information.

You can also read more about this type of threat on our Ransomware page.

 

Alert level: severe
Updated on Oct 19, 2014

Microsoft security software detects and removes this family of threats.

This ransomware family encrypts your files and shows you a webpage that asks you to pay a fee to unlock them.

See the Win32/Crilock family description for more information.

You can also read more about this type of threat on our Ransomware page.

Alert level: severe
Updated on Jun 08, 2017

Windows Defender detects and removes this threat.

It encrypts your files and displays a webpage that asks you to pay a fee to unlock them.

This threat is usually installed on your PC by other malware. You can read more about ransomware on our Ransomware page.

Windows 10 protects you from ransomware. Read more:

Windows 10 Creators Update provides next-gen ransomware protection

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Oct 05, 2016
Alert level: severe
Updated on Dec 13, 2021
Alert level: severe
Updated on Dec 27, 2013
Alert level: severe
Updated on Apr 23, 2015
Alert level: severe
Updated on Aug 21, 2016

Microsoft Defender Antivirus detects and removes this threat.

This threat can steal your personal and financial information, and give a malicious hacker access and control of your PC. It can also lower your Internet browser security and turn off your firewall.

It can be downloaded onto your PC by other malware, including threats from the Win32/Crilock and Win32/Necurs families. It can also be installed from a spam email attachment or when you visit a hacked or compromised website.

See the Win32/Zbot family description for more information.

Alert level: severe
Updated on Sep 14, 2017

Windows Defender detects and removes this threat.

This ransomware malware encrypts your files and shows you a webpage that asks you to pay a fee to unlock them.

It can be installed on your PC by other malware, such as TrojanDownloader:O97M/Donoff, or when you open a spam email attachment.

There is more information available in the Win32/Teerac family description.

Our ransomware FAQ page has more information on this type of threat.

Read our latest comprehensive ransomware report:

Ransomware 1H 2017 review: Global outbreaks reinforce the value of security hygiene

Alert level: severe
Updated on Sep 14, 2017

Windows Defender detects and removes this threat.

This threat is part of the Ransom:Win32/Teerac family. This ransomware encrypts your files and shows you a webpage that asks you to pay a fee to unlock them.

They can be installed on your PC by other malware, such as TrojanDownloader:O97M/Donoff, or as a spam email attachment.

Our ransomware FAQ page has more information on this type of threat.

Read our latest comprehensive ransomware report:

Ransomware 1H 2017 review: Global outbreaks reinforce the value of security hygiene

Alert level: severe
Updated on Sep 14, 2017

Windows Defender detects and removes this threat.

This ransomware family encrypts your files and shows you a webpage that asks you to pay a fee to unlock them.

They can be installed on your PC by other malware, such as TrojanDownloader:O97M/Donoff, or as a spam email attachment.

Our ransomware FAQ page has more information on this type of threat.

Read our latest comprehensive ransomware report:

Ransomware 1H 2017 review: Global outbreaks reinforce the value of security hygiene

Alert level: severe
Updated on Sep 14, 2017

Microsoft security software detects and removes this threat.

This threat is part of the Ransom:Win32/Teerac  family. It can encrypt your files and show you a webpage that asks you to pay a fee to unlock them.

It can be installed on your PC by other malware, such as TrojanDownloader:O97M/Donoff, or by a spam email attachment.

See the Ransom:Win32/Teerac description for more information.

Our ransomware FAQ page has more information on this type of threat.

Read our latest comprehensive ransomware report:

Ransomware 1H 2017 review: Global outbreaks reinforce the value of security hygiene

Alert level: severe
Updated on Sep 14, 2014

Microsoft security software detects and removes this threat.

This threat can steal your personal and financial information and give a hacker access and control of your PC. It can also lower your Internet browser security and turn off your firewall.

We have seen this threat download other malware, including Trojan:Win32/Crilock.A and Trojan:Win32/Necurs. Crilock is a ransomware family that can encrypt the files on your PC and then demand money to unlock them. Necurs is family of malware that can turn off your security software and redirect your web browser.

It can be installed on your PC via spam emails and hacked websites, or packaged with other malware families.

The Win32/Zbot family description has more information. 

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Jun 11, 2015

Microsoft security software detects and removes this threat.

This family of trojans can steal your personal and financial information and give a hacker access and control of your PC. They can also lower your Internet browser security and turn off your firewall.

We have seen these threats download other malware, including Trojan:Win32/Crilock.A and Trojan:Win32/Necurs. Crilock is a ransomware family that can encrypt the files on your PC and then demand money to unlock them. Necurs is family of malware that can turn off your security software and redirect your web browser.

Win32/Zbot can be installed on your PC via spam emails and hacked websites, or packaged with other malware families.

Find out ways that malware can get on your PC.

Alert level: severe
Updated on Jul 05, 2015

Microsoft security software detects and removes this threat.

This family of trojans can steal your personal and financial information, and give a malicious hacker access and control of your PC. They can also lower your Internet browser security and turn off your firewall.

We have seen these threats download other malware, including threats from the Win32/Crilock and Win32/Necurs families. Crilock ransomware can encrypts your files and then demand money to unlock them. Necurs malware can disable your security software and redirect your web browser.

Win32/Zbot can be installed on your PC via spam emails and hacked websites, or packaged with other malware families.

Find out ways that malware can get on your PC.

Alert level: severe