Published Apr 03, 2016 | Updated Sep 15, 2017

Win32/Sasquor

High |Detected with Windows Defender Antivirus

Aliases: No associated aliases

Summary

Windows Defender  detects and removes this unwanted software.

This browser modifier can change your web browser settings without adequate consent.   

This threat is a family that modifies browser search and home page settings, and may download and install additional malware such as Trojan:Win32/Xadupi and Trojan:Win32/Suweezy.

It is usually installed through bundlers such as SoftwareBundler:Win32/Mizenota, SoftwareBundler:Win32/Prepscram, SoftwareBundler:Win32/InstallMonsterSoftwareBundler:Win32/ICLoader and SoftwareBundler:Win32/Dartsmound.

This threat is part of a suite of malware and unwanted software families that is also called "Fireball". Read about this threat group in the Windows Security blog: 

Understanding the true size of “Fireball”

Find out more about how and why we identify unwanted software.

This program poses a high threat to your PC.

Use the following free Microsoft software to detect and remove this threat:

You should also run a full scan. A full scan might find hidden threats.

Remove programs

You might need to manually remove this program:

If an uninstaller is not available, does not work properly, or you do not want to use it, you can use the following free tools to detect and remove this program and other potentially unwanted software from your PC:

Remove browser add-ons

You might need to remove add-ons from your browser:

Use cloud protection

The Microsoft Active Protection Service (MAPS) uses cloud protection to help guard against the latest malware threats. It’s turned on by default for Microsoft Security Essentials and Windows Defender for Windows 10. 

Get more help

You can also see our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

If you’re using Windows XP, see our Windows XP end of support page.

Follow us