Change logs for security intelligence update version

This page lists newly added and updated threat detections included in security intelligence updates for Windows Defender Antivirus and other Microsoft antimalware. If you don’t find the latest security intelligence update version in the selector below, please refresh this page or let us know us know through the feedback smiley.

Looking for the latest update? Download the latest update

Released on

Added threat detections

No new threat detections added in selected update

Name Severity
Behavior:Win32/UacBypassLoadConnMgrDlls severe
Trojan:Win32/CryptInject.YK!MTB severe
Trojan:Win32/Ursnif.BS!MTB severe
TrojanDownloader:JS/Krostm severe
TrojanDownloader:O97M/Obfuse.EZ severe
Behavior:Win32/Taskelev.B severe
Behavior:Win32/TaskelevNonFriendly.A severe
Backdoor:MSIL/Baldr!bit severe
Backdoor:Win32/Ciadoor!bit severe
Backdoor:Win32/Dodiw!bit severe
Backdoor:Win32/Poison!bit severe
PWS:MSIL/Grmasi!bit severe
PWS:MSIL/Grmasi.YA!bit severe
PWS:Win32/Vidar!bit severe
Ransom:Win32/FriedEx!bit severe
Trojan:AutoIt/Wiausf!bit severe
Trojan:AutoIt/Wiausf.AC!bit severe
Trojan:Java/Jrat!bit severe
Trojan:MSIL/ClipBanker!bit severe
Trojan:MSIL/Imminent!bit severe
Trojan:MSIL/Wagsle severe
Trojan:O97M/Obfuse!bit severe
Trojan:O97M/Phish!bit severe
Trojan:PDF/Phish!bit severe
Trojan:Script/Foretype!bit severe
Trojan:Win32/BeeVry!bit severe
Trojan:Win32/Emotet.EQ!bit severe
Trojan:Win32/Floxif.E!bit severe
Trojan:Win32/Iceid.SD!bit severe
Trojan:Win32/Plead!bit severe
Trojan:Win32/Pteranodon!bit severe
Trojan:Win32/Rozena!bit severe
Trojan:Win32/ServStart!bit severe
Trojan:Win32/Tinukebot!bit severe
Trojan:Win32/Ursnif.BQ!bit severe
Trojan:Win64/CeeInject!bit severe
Trojan:Win64/CeeInject!bit severe
TrojanDownloader:Win32/Upatre.A!bit severe
TrojanDownloader:Win32/Zlob!bit severe
TrojanSpy:AutoIt/Stealer!bit severe
TrojanSpy:MSIL/Stimilini!bit severe
TrojanSpy:Win32/Redaman!bit severe
TrojanSpy:Win32/Stealer!bit severe
VirTool:Win32/VBInject.BAZ!bit severe
VirTool:Win32/VBInject.BBA!bit severe
Backdoor:MSIL/LimeRAT.A!bit severe
Trojan:MSIL/Wagsle severe
Trojan:VBS/Etucxe.A severe
TrojanDownloader:PowerShell/Refdow.A severe
Behavior:Win32/UACBypassExp.Q severe
Behavior:Win32/UACBypassExp.R severe
TrojanDownloader:O97M/Ocilo.A severe
VirTool:Win32/CeeInject.BDU!bit severe
VirTool:Win32/CeeInject.BDU!bit severe
Backdoor:MSIL/Bladabindi.BU!bit severe
Behavior:Win32/UACBypassExp.N severe
VirTool:Win32/AutInject.DA!bit severe
Trojan:Win32/Prevage.A!cl severe
Trojan:Win32/Powessere.L severe
Trojan:Win32/Catchman!dha severe
TrojanDownloader:PowerShell/Ploprolo!lnk severe

Updated threat detections

No threat detections updated in selected update

Name Severity
pws:win32/fareit
trojan:win32/bluteal!rfn
trojan:win32/emotet
trojan:win32/sonoko.a!ms
Behavior:Win32/CICmstp.D!attk severe
Behavior:Win32/MimikatzTrigger.B severe
Trojan:HTML/Phish severe
SoftwareBundler:Win32/Prepscram high
Trojan:Win32/Esendi!rfn severe
Trojan:PowerShell/Bynoco severe
Backdoor:Win32/Lojax severe
FriendlyFiles low
Trojan:O97M/Obfuse.YA severe
Trojan:PDF/Phish severe
Trojan:Win32/Emotet.EX severe
Trojan:Win32/Emotet.PC!MTB severe
Trojan:Win32/Esendi!rfn severe
Trojan:Win32/Skeeyah.A!rfn severe
Trojan:Win32/Swrort.A severe
TrojanDownloader:O97M/Obfuse.EX severe
TrojanDownloader:Win32/Sednit.A severe
TrojanSpy:Win32/Banker severe
Trojan:PDF/Phish severe
Trojan:Win32/Emotet.EX severe
Backdoor:MSIL/Baldr!bit severe
Backdoor:MSIL/Bladabindi!bit severe
Backdoor:MSIL/Bladabindi.BV!bit severe
Backdoor:MSIL/Noancooe!bit severe
Backdoor:MSIL/Noancooe.C!bit severe
Backdoor:Win32/Bandok!bit severe
Backdoor:Win32/Dodiw.A!bit severe
Backdoor:Win32/Fynloski.A!bit severe
Backdoor:Win32/NetWiredRC.AB!bit severe
Backdoor:Win32/Poison!bit severe
Backdoor:Win32/Predator.I!bit severe
Backdoor:Win32/Predator.J!bit severe
Backdoor:Win32/Remcos.SF!bit severe
Backdoor:Win32/Rescoms.B!bit severe
Backdoor:Win32/Venik.F!bit severe
Backdoor:Win32/Xtrat.A!bit severe
PWS:MSIL/Grmasi!bit severe
PWS:Win32/CoinStealer!bit severe
PWS:Win32/Fareit!bit severe
PWS:Win32/Primarypass.A!bit severe
PWS:Win32/Vidar.YB!bit severe
PWS:Win32/Zbot!bit severe
Ransom:MSIL/LockScreen!bit severe
Ransom:Win32/Crypmod.B!bit severe
Ransom:Win32/Crysis!bit severe
Ransom:Win32/FriedEx!bit severe
Ransom:Win32/GandCrab!bit severe
Ransom:Win32/Genrasam!bit severe
Ransom:Win32/Shade.B!bit severe
Ransom:Win32/Troldesh.AE!bit severe
Ransom:Win32/Wyhymyz!bit severe
SoftwareBundler:Win32/ICLoader high
Trojan:HTML/Phishing!bit severe
Trojan:Java/Adwind!bit severe
Trojan:Java/Jrat!bit severe
Trojan:MSIL/Aenjaris!bit severe
Trojan:MSIL/AgentTesla!bit severe
Trojan:MSIL/CeeInject!bit severe
Trojan:MSIL/ClipBanker!bit severe
Trojan:MSIL/Imminent!bit severe
Trojan:O97M/Obfuse!bit severe
Trojan:Script/Foretype!bit severe
Trojan:Win32/Aenjaris!bit severe
Trojan:Win32/BeeVry!bit severe
Trojan:Win32/Bluteal!bit severe
Trojan:Win32/Casdet!bit severe
Trojan:Win32/CeeInject!bit severe
Trojan:Win32/ClipBanker!bit severe
Trojan:Win32/CryptInject.YG!bit severe
Trojan:Win32/Emotet!bit severe
Trojan:Win32/Emotet.AC!bit severe
Trojan:Win32/Emotet.PC!bit severe
Trojan:Win32/Farfli!bit severe
Trojan:Win32/Floxif.E!bit severe
Trojan:Win32/Gandcrab.D!bit severe
Trojan:Win32/Glupteba!bit severe
Trojan:Win32/Gootkit.AC!bit severe
Trojan:Win32/Lokibot.SW!bit severe
Trojan:Win32/MereTam.A!bit severe
Trojan:Win32/Occamy.B!bit severe
Trojan:Win32/Occamy.C!bit severe
Trojan:Win32/Plead!bit severe
Trojan:Win32/Pteranodon!bit severe
Trojan:Win32/Pynamer.B!bit severe
Trojan:Win32/Runner!bit severe
Trojan:Win32/ServStart!bit severe
Trojan:Win32/Skeeyah.A!bit severe
Trojan:Win32/Sonoko.A!bit severe
Trojan:Win32/Spatet!bit severe
Trojan:Win32/Swrort.A!bit severe
Trojan:Win32/Tiggre!bit severe
Trojan:Win32/Tinukebot!bit severe
Trojan:Win32/TrickBot!bit severe
Trojan:Win32/TrickBot.T!bit severe
Trojan:Win32/Ursnif.AD!bit severe
TrojanDownloader:O97M/Dornoe.A!bit severe
TrojanDownloader:O97M/Obfuse.EX severe
TrojanDownloader:O97M/Xdoc.YB!bit severe
TrojanDownloader:VBA/Aenjaris!bit severe
TrojanDownloader:Win32/Gendwnurl!bit severe
TrojanDownloader:Win32/Nymaim!bit severe
TrojanProxy:Win32/Bunitu!bit severe
TrojanSpy:MSIL/Aenjaris!bit severe
TrojanSpy:MSIL/Keylogger!bit severe
TrojanSpy:MSIL/Stimilini!bit severe
TrojanSpy:Win32/Aenjaris!bit severe
TrojanSpy:Win32/Banker!bit severe
TrojanSpy:Win32/Fareit!bit severe
TrojanSpy:Win32/Gendelfan!bit severe
TrojanSpy:Win32/KeyLogger!bit severe
TrojanSpy:Win32/Lokibot.A!bit severe
TrojanSpy:Win32/Loyeetro.B!bit severe
TrojanSpy:Win32/Swotter.A!bit severe
TrojanSpy:Win32/Ursnif!bit severe
VirTool:MSIL/Subti!bit severe
VirTool:Win32/CeeInject!bit severe
VirTool:Win32/CeeInject.AAX!bit severe
VirTool:Win32/CeeInject.ABQ!bit severe
VirTool:Win32/CeeInject.ABU!bit severe
VirTool:Win32/CeeInject.ANO!bit severe
VirTool:Win32/CeeInject.BCG!bit severe
VirTool:Win32/CeeInject.BDB!bit severe
VirTool:Win32/CeeInject.BDO!bit severe
VirTool:Win32/CeeInject.BDV!bit severe
VirTool:Win32/VBInject.ACB!bit severe
VirTool:Win32/VBInject.ACH!bit severe
VirTool:Win32/VBInject.ACL!bit severe
VirTool:Win32/VBInject.ACM!bit severe
VirTool:Win32/VBInject.ACS!bit severe
VirTool:Win32/VBInject.ACX!bit severe
VirTool:Win32/VBInject.ADB!bit severe
VirTool:Win32/VBInject.ADH!bit severe
VirTool:Win32/VBInject.ADR!bit severe
VirTool:Win32/VBInject.AJM!bit severe
VirTool:Win32/VBInject.BAI!bit severe
VirTool:Win32/VBInject.BAT!bit severe
VirTool:Win32/VBInject.BAV!bit severe
VirTool:Win32/VBInject.BAW!bit severe
VirTool:Win64/CeeInject!bit severe
Trojan:Win32/Lokibot severe
Trojan:Win32/Skeeyah.A!bit severe
TrojanDownloader:O97M/Obfuse.EX!ams severe
VirTool:Win32/AutInject.CZ!bit severe
Behavior:Win32/UACBypassExp.O severe
Trojan:MSIL/CryptInject!MTB severe
Trojan:Win32/Nymaim.PA!MTB severe
Ransom:Win32/Gandcrab.H!MTB severe
Trojan:Win32/Skeeyah.A!bit severe
Trojan:JS/Redirector!bit severe
Trojan:Win32/CoinMiner!bit severe
BrowserModifier:Win32/Prifou high
Trojan:HTML/Phish severe
Trojan:Java/Adwind severe
Trojan:Win32/Qakbot severe