We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Trojan:Win32/Chuckenit.A
Aliases: No associated aliases
Summary
This threat unchecks checkboxes in installation dialogue boxes, messing with choices without user knowledge during installation.
It may be installed together with BrowserModifier:Win32/SupTab and Trojan:Win32/Ghokswa when Trojan:Win32/Xadupi downloads and installs updates. Trojan:Win32/Xadupi, meanwhile is installed by BrowserModifier:Win32/Sasquor, although it may also be installed directly by software bundlers.
This threat is part of a suite of malware and unwanted software families that is also called "Fireball". For information about Chuckenit and other human-operated malware campaigns, read these blog posts:
Microsoft Defender Antivirus automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.
You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.