Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Sep 12, 2007 | Updated Sep 15, 2017

Spammer:Win32/Nuwar.D

Detected by Microsoft Defender Antivirus

Aliases: Win32/Tibs!generic (CA) Trojan-Downloader.Win32.Tibs.kk (Kaspersky) Downloader-ASH (McAfee) TrojanDownloader:Win32/Vxgame (Microsoft) W32/Tibs.QEC (Norman) Troj/Tibs-PU (Sophos) VIPRE.Suspicious (Sunbelt Software) Trojan.Packed.13 (Symantec) TROJ_MULP.BH (Trend Micro)

Summary

Spammer:Win32/Nuwar.D is a component of the Win32/Nuwar Trojan family, and is used to relay e-mails. E-mail messages are sent in various formats, commonly containing a hyperlink to a remote Web site hosting Win32/Nuwar Trojan files.
Spammer:Win32/Nuwar.D may download and install additional malicious software, thus manual removal is not recommended. To detect and remove this Trojan and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx.
Follow us