Select Page
Map showing location of observed Soctuseer infections. The United States, Indonesia and India account for 40% of infections

MSRT November 2016: Unwanted software has nowhere to hide in this month’s release

Security
We came across a browser modifier that sports rootkit capabilities. Not only does the threat, detected as BrowserModifier:Win32/Soctuseer, cross the line that separates legitimate software from unwanted, it also takes staying under the radar to the next level. Rootkit capabilities, ... continue reading
Map showing location of observed Soctuseer infections. The United States, Indonesia and India account for 40% of infections

MSRT November 2016: Unwanted software has nowhere to hide in this month’s release

Security
We came across a browser modifier that sports rootkit capabilities. Not only does the threat, detected as BrowserModifier:Win32/Soctuseer, cross the line that separates legitimate software from unwanted, it also takes staying under the radar to the next level. Rootkit capabilities, ... continue reading
Screenshot SoftwareBundler:Win32/InstallMonster being downloaded with details of its offering SupTab under the name "Yoursearching"

MSRT October 2016 release: Adding more unwanted software detections

Security
Unwanted software often piggy-backs on program downloads, delivered by software bundlers. These bundles, which you might have downloaded, can include software that you do not want, and some that are harmful. The bundled or “extra” software can perform actions on ... continue reading
This heatmap shows the geographical spread of Prifou-infected machines

MSRT September 2016 release feature: Prifou

Security
As part of our ongoing effort to provide better malware protection, the Microsoft Malicious Software Removal Tool (MSRT) release this September includes detections for: BrowserModifier:Win32/Prifou TrojanClicker:Win32/NightClick Trojan:Win32/Suweezy Trojan:Win32/Xadupi This blog discusses BrowserModifier:Win32/Prifou (Prifou). Windows Defender detects this threat because it ... continue reading