Published Mar 06, 2016|Updated Sep 15, 2017


Alert level: Severe Detected with Windows Defender Antivirus

Also detected as: PUA/Subtab.Gen7 (Avira) W32/Trojan.IIIP-0438 (Command)

Windows Defender detects and removes this threat.

This threat is a trojan that poses as a useful application, usually called WinZipper or QKSee, but can silently download and install other malware.

This trojan is often installed silently by BrowserModifier:Win32/Sasquor or BrowserModifier:Win32/SupTab. It is often installed under the name "WinZipper", "QKSee", or both.

This threat is part of a suite of malware and unwanted software families that is also called "Fireball". Read about this threat group in the Windows Security blog: 

Understanding the true size of “Fireball”

Find out ways that malware can get on your PC.


Latest news