We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/Cadux.C
Detected by Microsoft Defender Antivirus
Aliases: Trojan.Fakeavalert (Symantec)
Summary
Trojan:Win32/Cadux.C is a trojan that displays fake warnings about supposedly malicious programs and viruses, which may redirect users to websites that install fraudulent antivirus software.
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, see http://www.microsoft.com/protect/computer/viruses/vista.mspx.
Â
This threat may make lasting changes to an affected system’s configuration that will NOT be restored by detecting and removing this threat. For more information on returning an affected system to its pre-infected state, please see the following article/s:Â
- Restoring your System Registry:
- For Windows XP and Vista: http://support.microsoft.com/kb/322756/Â
- For Windows 2000: http://support.microsoft.com/kb/322755/ Â
- For other support and help related articles, go to:
- Windows Vista: http://support.microsoft.com/ph/11732#tab0Â
- Windows XP:Â http://support.microsoft.com/ph/1173#tab0
Â
It is also recommended that you revert your desktop background to the original image to avoid accidentally clicking on the link in the default.htm file.