Attention: We have transitioned to a new AAD or Microsoft Entra ID from the week of May 20, 2024. In case your tenant requires admin consent, please refer to this document located at Overview of user and admin consent - Microsoft Entra ID | Microsoft Learn and grant access to App ID: 6ba09155-cb24-475b-b24f-b4e28fc74365 with graph permissions for Directory.Read.All and User.Read for continued access. While the app may appear unverified, you can confirm its legitimacy by verifying the App ID provided.
32 entries found.
Displaying page 1
of 2.
Win32/Vundo
Windows Defender Antivirus detects and removes this threat.
Win32/Vundo is a multiple-component family of malware that delivers "out of context" pop-up advertisements. Variants of the family may also download and run other files, including malware and adware.
Vundo is often installed as a browser helper object (BHO) without your consent, by other malware.
This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level:
high
Adware:Win32/Virtumonde.C
This program was detected by definitions prior to 1.175.2424.0 as it violated the guidelines by which Microsoft identified unwanted software. Based on analysis using current guidelines, the program does not have unwanted behaviors.
Alert level:
moderate
Trojan:Win32/Vundo.KA
Trojan:Win32/Vundo.KA is a trojan that injects itself into running processes to avoid detection. It connects to a remote server to send information about the infected computer and to possibly download and execute other files. It also terminates or modifies certain processes that may be related to antispyware programs.
Alert level:
severe
Trojan:Win32/Vundo.HT
Trojan:Win32/Vundo.HT is a variant of Win32/Vundo, a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level:
severe
Trojan:Win32/Vundo.gen!V
Trojan:Win32/Vundo.gen!V is a generic detection for a multi-component family of programs that deliver 'out of context' pop-up advertisements to the computer on which they are installed and may download and execute arbitrary files. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level:
severe
Trojan:Win32/Vundo.IA
Win32/Vundo is a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level:
severe
Trojan:Win32/Vundo.JC.dll
Trojan:Win32/Vundo.JC.dll is a detection for the DLL file component of the Vundo family that deliver 'out of context' pop-up advertisements to the computer on which they are installed and may terminate services and processes.
Alert level:
severe
Trojan:Win32/Vundo.gen!AE
Trojan:Win32/Vundo.gen!AE is a component of Win32/Vundo - a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
For more information, please see the Win32/Vundo analysis elsewhere in our encyclopedia.
For more information, please see the Win32/Vundo analysis elsewhere in our encyclopedia.
Alert level:
severe
Trojan:Win32/Vundo.JD.dll
Windows Defender Antivirus detects and removes this threat.
This threat is a component of the Win32/Vundo family of trojans.
Vundo is often spread as a DLL file and installed on your PC as a Browser Helper Object (BHO) without your consent. The family also uses advanced techniques to avoid detection and removal.
This particular component is used to download and run files.
Alert level:
severe
Trojan:Win32/Vundo.JC
Trojan:Win32/Vundo.JC is a trojan that may register itself as a BHO (Browser Helper Object) and inject itself into normal Windows processes. It may attempt to terminate certain security processes, and connect to certain servers to possibly download other malware.
Alert level:
severe
Trojan:Win32/Tracur.A
Trojanr:Win32/Tracur.A is a trojan that downloads and executes arbitrary files.
Alert level:
severe
TrojanDownloader:Win32/Tracur.A
TrojanDownloader:Win32/Tracur.A is a trojan that downloads and executes arbitrary files.
Alert level:
severe
Trojan:Win32/Hiloti.gen!A
Trojan:Win32/Hiloti.gen!A is a generic detection for a family of trojans that may download potentially malicious files from a remote server and report system information back to the server. This trojan has been observed in the wild being dropped by Win32/FakePowav.
Alert level:
severe
Backdoor:WinNT/Syzor.A
Backdoor:WinNT/Syzor.A is a backdoor trojan that may be dropped by other malware. It may collect system information and log keystrokes, and hooks certain functions to hinder its detection and removal.
Alert level:
severe
Adware:Win32/Virtumonde.A
This program was detected by definitions prior to 1.175.2424.0 as it violated the guidelines by which Microsoft identified unwanted software. Based on analysis using current guidelines, the program does not have unwanted behaviors.
Alert level:
moderate
Trojan:Win32/Vundo.KM
Trojan:Win32/Vundo.KM is the detection for a member of the Win32/Vundo family of malware. It creates a connection to the Web site 'antassa.com'. It may also inject code into Internet Explorer, redirect searches, display advertisements, download and run files from a remote server, and send information about the infected system to a remote server.
Alert level:
severe
Trojan:Win32/Vundo.gen!AO
Trojan:Win32/Vundo.gen!AO is a component of Win32/Vundo - a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
Alert level:
severe
TrojanDownloader:Win32/Conhook.AF
TrojanDownloader:Win32/Conhook.AF is a trojan that injects its code into running processes, terminates specific security services and downloads and executes arbitrary files (which may include additional malware).
Alert level:
severe
Worm:Win32/Vundo
Alert level:
severe
Trojan:Win32/Vundo
Windows Defender Antivirus detects and removes this threat.
This threat is a component of Win32/Vundo - a family of programs that deliver 'out of context' pop-up advertisements. They can also download and run files.
Vundo is often spread as a DLL file and installed on your PC as a Browser Helper Object (BHO) without your consent. The family also uses advanced techniques to avoid detection and removal.
Alert level:
severe