We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Trojan:VBS/Tracur
Detected by Microsoft Defender Antivirus
Aliases: VBS/Disabler.NAB (ESET) Troj/Fwdisab-B (Sophos) VBS/Xema (AhnLab) VBS/Smalltroj.XSV (Norman) Trojan Horse (Symantec)
Summary
Trojan:VBS/Tracur is a VBS component dropped by TrojanDownloader:Win32/Tracur.A. When run, this script adds the 'explorer.exe' process to the Windows Firewall exceptions list to deliberately lower system security settings.
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as Microsoft Security Essentials, or the Microsoft Safety Scanner. For more information about using antivirus software, see http://www.microsoft.com/security/antivirus/av.aspx.