We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Trojan:Win32/Alureon.TK
Aliases: Backdoor.Win32.ZAccess.bmh (Kaspersky) Trojan.Tdss.6425 (BitDefender) Trojan.Win32.Alureon (Ikarus) TDSS.ac (McAfee)
Summary
Trojan:Win32/Alureon.TK is a variant of the Win32/Alureon family that may attempt to embed HTML code into webpages visited by the the user or redirect the browser to certain websites.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
- Microsoft Security Essentials
- Microsoft Safety Scanner
- Microsoft Windows Malicious Software Removal Tool
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Additional remediation instructions for this threat
This threat may make lasting changes to a computer's configuration that are NOT restored by detecting and removing this threat. For more information on returning an infected computer to its pre-infected state, please see the following article/s:
- Restoring your System Registry:
- For Windows 7: http://windows.microsoft.com/en-us/windows7/Back-up-the-registry
- For Windows Vista: http://windows.microsoft.com/en-US/windows-vista/Back-up-the-registry
- For Windows XP: http://support.microsoft.com/kb/322756/
- Configuring Security Zone settings for Internet Explorer:
- For Windows 7: http://windows.microsoft.com/en-us/Windows7/Change-Internet-Explorer-Security-settings
- For Internet Explorer 7 and 8 in Windows Vista: http://windows.microsoft.com/en-us/windows-vista/Change-Internet-Explorer-Security-settings
- For Internet Explorer 6: http://support.microsoft.com/kb/174360
- For other support and help related articles, go to:
- Windows 7: http://support.microsoft.com/gp/windows7
- Windows Vista: http://support.microsoft.com/ph/11732
- Windows XP: http://support.microsoft.com/ph/1173
- Microsoft Security TechNet Center: http://technet.microsoft.com/security/default.aspx