Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Mar 11, 2015 | Updated Jul 03, 2016

PUA:Win32/VOPackage

Detected by Microsoft Defender Antivirus

Aliases: not-a-virus:AdWare.Win32.ConvertAd.bfwu (Kaspersky) RDN/Generic PUP.z (McAfee) a variant of Win32/Adware.ConvertAd.AIB application (ESET) VOPackage (Sophos) ADW_ConvertAd (Trend Micro) PE:Trojan.ConvertAd!1.A36E [F] (Rising AV) Gen:Variant.Graftor.290781 (BitDefender) PUA.VOPackage (Symantec)

Summary

This application was stopped from running on your network because it has a poor reputation. This application can also affect the quality of your computing experience. We have seen this leading to the following potentially unwanted behaviors on PCs:

  • Adds files that run at startup
  • Installs a driver
  • Injects into other processes on your system
  • Injects into browsers
  • Changes browser settings
  • Changes browser shortcuts
  • Installs browser extensions
  • Adds a local proxy
  • Tampers with root certificate trust
  • Modifies the system hosts file
  • Modifies your system DNS settings
  • Disables anti-virus products
  • Tampers with system Group Policy settings

These applications are most commonly software bundlers or installers for applications such as toolbars, adware, or system optimizers. We have observed this application installing software that you might not have intended on your PC.

If you were trying to install an application, you might have downloaded it from a source other than the official product's website.

We usually see this application installed on PCs in the following countries. This list is sorted according to prevalence:

  • United States
  • Russia
  • Brazil
  • France
  • Spain

This detection is part of our extended Potentially Unwanted Application protection feature.

You should contact your IT representative or network administrator to find how you can install legitimate programs while connected to your network.

Follow us