Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Oct 17, 2008 | Updated Sep 15, 2017

Trojan:WinNT/Tibs.gen!A

Detected by Microsoft Defender Antivirus

Aliases: Trojan.Peed.IQS (BitDefender) Win32/Sintun (CA) Rootkit.Win32.Agentu.ru (Kaspersky) W32/Nuwar@MM (McAfee) Trojan.Rootkit.GEN (Sunbelt Software) WORM_NUCRP.GEN (Trend Micro) Backdoor:WinNT/Nuwar.D!sys (other)

Summary

Trojan:WinNT/Tibs.gen!A is generic detection for drivers used across multiple pieces of malware affiliated with the 'Tibs' malware distribution network. WinNT/Tibs malware uses rootkit methods to hide its presence on an infected computer.
Manual removal is not recommended for this threat. Use Microsoft Security Essentials or another up-to-date scanning and removal tool to detect and remove this threat and other unwanted software from your computer. For more information on Microsoft security products, see http://www.microsoft.com/protect/products/computer/default.mspx.
Follow us