Skip to main content
Skip to main content
Microsoft Security Intelligence
1008 entries found. Displaying page 1 of 51.
Updated on Jan 14, 2010
PWS:Win32/OnLineGames.FR is a trojan that steals passwords and other sensitive information. It can also download arbitrary files from certain Web servers.
Alert level: severe
Updated on Aug 24, 2006
PWS:Win32/Sinowal.E is the dropper component of a Trojan that steals user data and opens a backdoor on the infected computer. PWS:Win32/Sinowal.E drops files that Microsoft detects as PWS:Win32/Sinowal.K, PWS:Win32/Sinowal.M.dll, PWS:Win32/Sinowal.H.dll, and PWS:Win32/Sinowal!AD29.
Alert level: severe
Updated on Nov 05, 2007
Worm:Win32/Wowsteal.ZE is a password stealer for the computer video game World of Warcraft (WoW). This malware sends captured passwords to a remote destination configured by the malware author, spreads by copying itself to removable drives and uses advanced stealth techniques to hide its presence on the affected machine.
Alert level: severe
Updated on May 20, 2009
PWS:Win32/Sinowal.gen!O is a component of the greater Win32/Sinowal family.
Alert level: severe
Updated on Jun 22, 2009
PWS:Win32/Zbot.PM is a trojan password stealer that can may bypass installed firewall applications to send captured passwords to an attacker. It also contains limited backdoor functionality that allows unauthorized access and control of an affected machine.
Alert level: severe
Updated on Sep 07, 2009
PWS:Win32/Zbot.WK is a password stealing trojan. Win32/Zbot also contains backdoor functionality that allows unauthorized access and control of an affected machine.
Alert level: severe
Updated on Nov 16, 2009
PWS:Win32/Zbot.XE is a password stealing trojan. Win32/Zbot also contains backdoor functionality that allows unauthorized access and control of an affected machine.
Alert level: severe
Updated on Nov 16, 2009
PWS:Win32/Zbot.XF is a password stealing trojan. Win32/Zbot also contains backdoor functionality that allows unauthorized access and control of an affected machine.
Alert level: severe
Updated on Feb 27, 2010
PWS:Win32/Zbot.RR is a password stealing trojan. Win32/Zbot also contains backdoor functionality that allows unauthorized access and control of an affected machine.
Alert level: severe
Updated on Nov 04, 2010
PWS:MSIL/Parple.B is an obfuscated .Net-compiled malware that can drop several files into the computer and gather sensitive information depending on the scripts that are bundled with it.
Alert level: severe
Updated on Oct 14, 2011
Trojan:Win32/Duqu.A is a trojan that injects malicious code into other processes. The trojan itself is injected into other processes by Trojan:WinNT/Duqu.A.
Alert level: severe
Updated on Jun 26, 2008
PWS:Win32/QQRob is a family of programs that steals user input for QQ mesenger. It also terminates or disables security-related processes and downloads and executes files from certain websites.
Alert level: severe
Updated on Jul 23, 2008
PWS:Win32/Frethog.gen!L is a member of the W32/Frethog family of password-stealing trojans that target confidential data.
Alert level: severe
Updated on Aug 17, 2009
Trojan:Win32/Vundo.KO is a component of Win32/Vundo - a multiple-component family of programs that deliver 'out of context' pop-up advertisements. They may also download and execute arbitrary files.
Vundo is often distributed as a DLL file and installed on an affected machine as a Browser Helper Object (BHO) without a user's consent. This family uses advanced defensive and stealth techniques to escape detection and to hinder removal.
 
This particular component is used to download and execute arbitrary files to the affected computer. In the wild, we have observed Trojan:Win32/Vundo.KO downloading and installing additional Vundo components such as Trojan:Win32/Vundo.gen!AT.
Alert level: severe
Updated on Nov 23, 2009
PWS:Win32/Ldpinch.A is a member of Win32/Ldpinch - a family of trojans that steals sensitive information from affected machines and sends it to a remote attacker. In particular, Ldpinch variants target passwords for a comprehensive selection of FTP, chat and e-mail clients, as well as those stored by browsers and in protected storage.
Alert level: severe
Updated on Feb 11, 2010
PWS:Win32/Nemqe.B is a detection for the DLL component of a game password stealer.
Alert level: severe
Updated on May 14, 2010
TrojanSpy:Win32/Bancos.TH!dll is a password stealing trojan that targets specific online banking Web sites. Captured credentials are sent via SMTP e-mail to a specified address. It is usually installed as a Browser Helper Object (BHO) by TrojanSpy:Win32/Bancos.TH.
Alert level: severe
Updated on Aug 10, 2012

TrojanSpy:Win32/Gauss.A is a trojan that terminates certain system processes. It also loads other malware, which may already be installed in your computer.

Alert level: severe
Updated on Sep 01, 2006
PWS:Win32/Sinowal.K is a data-stealing Trojan. It is dropped by PWS:Win32/Sinowal.E. For more information, see http://www.microsoft.com/security/encyclopedia/details.aspx?Name=PWS:Win32/Sinowal.E
Alert level: severe
Updated on Nov 22, 2007
TrojanDropper:Win32/QQpass.gen!D is a generic detection for Delphi compiled malware that drops additional components used to steal user information.
Alert level: severe