We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Spammer:Win32/Nuwar.E
Detected by Microsoft Defender Antivirus
Aliases: Email-Worm.Win32.Zhelatin.et (Kaspersky) W32/Tibs.gen114 (Norman) Trojan.Packed.13 (Symantec) Possible_Nucrp-3 (Trend Micro)
Summary
Spammer:Win32/Nuwar.E is a component of the Win32/Nuwar Trojan family, and is used to relay e-mails. E-mail messages are sent in various formats, commonly containing a hyperlink to a remote Web site hosting Win32/Nuwar Trojan files.
Spammer:Win32/Nuwar.E may download and install additional malicious software, thus manual removal is not recommended. To detect and remove this Trojan and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx.