Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Nov 21, 2011 | Updated Sep 15, 2017

Trojan:WinNT/Bibei.A

Detected by Microsoft Defender Antivirus

Aliases: W32/Rootkit.CJSW (Norman) Trojan.NtRootKit.12556 (Dr.Web) Rootkit.Win32.Agent (Ikarus) Rootkit.Win32.Agent.buye (Kaspersky) RootKit.Win32.Undef.cvt (Rising AV) Mal/RootKit-AW (Sophos)

Summary

Trojan:WinNT/Bibei.A is a driver component installed by TrojanDropper:Win32/Bibei.A on an affected computer. It is used to connect to a remote server and download other malware.

To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:

For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.

Follow us