Skip to main content
Skip to main content
1504 entries found. Displaying page 16 of 76.
Updated on Jan 16, 2008
Trojan:Win32/Boaxxe.C is a Browser Helper Object (BHO) that is used to download and execute arbitrary files.
Alert level: severe
Updated on Jan 31, 2008
Trojan:Win32/VNCKill.A is a trojan that terminates a remote control client, known as VNC or Virtual Network Computing, and deletes program folders associated with this application.
Alert level: severe
Updated on Feb 04, 2008
TrojanDownloader:Win32/Zlob.CCA is a generic detection of a component of the greater Win32/Zlob malware family. Win32/Zlob refers to a large multi-component family of malware that modifies Internet Explorer's settings, alters and redirects the user's default Internet search page and home page, and attempts to download and execute arbitrary files (including additional malicious software).
 
The Win32/Zlob family is associated with rogue security programs that display misleading warnings regarding non-existent malware installations or infections. Once installed, Win32/Zlob deceives users by displaying alerts, and similar messages that claim that the machine is infected by malware and spyware. It then displays links to purchase rogue Antispyware products. 
The TrojanDownloader:Win32/Zlob.CCA detection is specific to a DLL component from a Win32/Zlob installation. The component is responsible for displaying  fake alerts and messages claiming that the user's system is infected with spyware.
Alert level: severe
Updated on Feb 08, 2008
TrojanDownloader:Win32/Renos.CJ is a variant of Win32/Renos, a family of trojan downloaders that automatically download unwanted software such as SpySheriff, SpyAxe, SpyFalcon, SpyDawn, SpywareStrike, and other similarly named programs. These programs typically present erroneous warnings claiming the system is infected with spyware and offer to remove the alleged spyware for a fee. In some cases, the programs may also cause system instability.
Alert level: severe
Updated on Feb 13, 2008
Program:Win32/BaiduIebar is a detection for an address line search tool. This program was detected by definitions prior to 1.153.956.0 as it violated the guidelines by which Microsoft identified unwanted software. Based on analysis using current guidelines, the program does not have unwanted behaviors. Microsoft has released definition 1.153.956.0 which no longer detects this program.
Alert level: moderate
Updated on Feb 18, 2008
Trojan:Win32/Horst.gen!B is a generic detection for a group of trojans that manipulates the web interfaces for free online e-mail service providers, such as Yahoo, AOL, Gmail and Hotmail, with the intention of registering e-mail accounts that can be utilized to send spam.
Alert level: severe
Updated on Feb 20, 2008
TrojanSpy:Win32/Goldun.ZZR is a password stealer that targets online financial institution user credentials. It may have been distributed in a spam e-mail message, as an attachment named 'photo.scr'.
Alert level: severe
Updated on Feb 22, 2008
TrojanSpy:Win32/Maran.AT is a trojan that captures user login details for Yahoo Messenger, several online games, and other web sites.
Alert level: severe
Updated on Feb 27, 2008
TrojanDownloader:Win32/Renos.CO is a variant of Win32/Renos, a family of trojan downloaders that automatically download unwanted software such as SpySheriff, SpyAxe, SpyFalcon, SpyDawn, SpywareStrike, and other similarly named programs. These programs typically present erroneous warnings claiming the system is infected with spyware and offer to remove the alleged spyware for a fee. In some cases, the programs may also cause system instability.
Alert level: severe
Updated on Mar 11, 2008
Trojan:Win32/MotePro may display advertisement pop-ups, and download programs from predefined Web sites. When installed, Win32/MotePro runs as a Web Browser Helper Object (BHO).
Alert level: high
Updated on Mar 16, 2008
Spammer:Win32/Clodpuntor is a trojan that sends spam e-mail.
Alert level: severe
Updated on Mar 25, 2008
TrojanDownloader:Win32/Zlob.gen!AV is generic detection for a component of the greater Win32/Zlob malware family. Win32/Zlob refers to a large multi-component family of malware that modifies Internet Explorer's settings, alters and redirects the user's default Internet search page and home page, and attempts to download and execute arbitrary files (including additional malicious software). The Win32/Zlob family has also been associated with rogue security programs that display misleading warnings regarding bogus malware infections.
Alert level: severe
Updated on Mar 25, 2008
Worm:AutoIt/Sohanad.AI is an AutoIT script worm that spreads by copying itself to local and removable drives, and network shares. It may also send messages to contacts via Yahoo Messenger.
Alert level: severe
Updated on Mar 25, 2008
Worm:Win32/Nuqel.AS is an AutoIT script worm that spreads by copying itself to local and removable drives, and network shares. It may also send messages to contacts via Yahoo Messenger.
Alert level: severe
Updated on Mar 27, 2008
Trojan:Win32/Zlob.gen!H is a generic detection for a component of the greater Win32/Zlob malware family. Win32/Zlob refers to a large multi-component family of malware that modifies Internet Explorer's settings, alters and redirects the user's default Internet search page and home page, and attempts to download and execute arbitrary files (including additional malicious software). The Win32/Zlob family has also been associated with rogue security programs that display misleading warnings regarding bogus malware infections.
Alert level: severe
Updated on Apr 01, 2008
Trojan:Win32/Silentbanker.B.dll is a component of Trojan:Win32/Silentbanker.B, which is a generic detection for variants of the Silentbanker trojan family.
 
Win32/Silentbanker is a monitoring trojan that captures screen shots, and logs key strokes, including login credentials for financial institutions. This trojan alters login pages displayed in order to capture specific data, redirects user Web page requests, and may download additional malicious programs.
Alert level: severe
Updated on Apr 14, 2008
Exploit:Win32/Jdrop.gen!A is a generic detection for specially crafted Microsoft Access Database (MDB) files that exploit the Microsoft Jet Database Engine File Parsing Stack Overflow Vulnerability. This vulnerability is referenced by Common Vulnerabilities and Exposures ID CVE-2008-1092, and described in Microsoft Security Advisory 950267.
Alert level: severe
Updated on Apr 22, 2008
Win32/Vundo is a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files. Win32/Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level: severe
Updated on Apr 24, 2008
Trojan:Win32/Tibs.gen!H is a generic detection that may identify other variants of malware affiliated with the 'Tibs' malware distribution network.
Alert level: severe
Updated on Apr 30, 2008

This program was detected by definitions prior to 1.175.1834.0 as it violated the guidelines by which Microsoft identified unwanted software. Based on analysis using current guidelines, the program does not have unwanted behaviors.

 
Alert level: moderate