We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/Wintrim
Aliases: Win32/Adware.Lollipop.C (ESET) Adware.Lollipop.E (BitDefender) Adware/Lollipop.E.1 (Avira) AdWare.Win32.Lollipop.dm (Kaspersky)
Summary
Windows Defender detects and removes this threat.
This family of trojan downloaders download malware from the Trojan:Win32/Wintrim family. These trojans redirect search engine results and display pop-ups based on keywords you enter into certain search engines. They might also send information about your computer to a remote server.
This threat may create an uninstaller that can be accessed from the Control Panel:
- For Windows 8 and 8.1, open the Start screen and type Uninstall. In the search results, go to Uninstall a program (in Windows 8, first select Settings).
- For Windows 7 and Vista, open the Start menu and navigate to Control Panel>Programs>Uninstall a Program
- For XP, open the Start menu and navigate to Control Panel>Add or Remove Programs
The entry may be called "Lollipop".
If an uninstaller is not available, does not work properly, or you do not want to use it, you can use the following scanning and removal tools to detect and remove this threat and other malicious software from your PC:
- Microsoft Security Essentials or, for Windows 8, Windows Defender
- Microsoft Safety Scanner
Even if we've already detected and removed this particular threat, running a full scan might find other threats that are hiding on your PC.