Attention: We have transitioned to a new AAD or Microsoft Entra ID from the week of May 20, 2024. In case your tenant requires admin consent, please refer to this document located at Overview of user and admin consent - Microsoft Entra ID | Microsoft Learn and grant access to App ID: 6ba09155-cb24-475b-b24f-b4e28fc74365 with graph permissions for Directory.Read.All and User.Read for continued access. While the app may appear unverified, you can confirm its legitimacy by verifying the App ID provided.
4 entries found.
Worm:Win32/Yeltminky.A
Worm:Win32/Yeltminky.A is a worm - a self-propagating program that can spread itself from one computer to another. Worms may spread themselves via a variety of different channels in order to compromise new computers. Worms usually spread using methods that include, but may not be limited to, copying themselves to removable or network drives, and placing an autorun.inf file in the root directory of each affected drive in an attempt to ensure that the worm is run when the removable drive is attached, or the network drive is visited from a remote system supporting the Autorun feature.
Alert level:
severe
Worm:Win32/Yeltminky.A!inf
Windows Defender detects and removes this threat.
This threat is an autorun.inf file created by the Win32/Yeltminky family of worms. The family creates this autorun file to help them spread and infect other computers through network and local drives, and removable devices, such as a USB flash drive.
Autorun.inf files on their own are not necessarily a sign of infection. They are also used by legitimate programs.
Alert level:
severe
Worm:Win32/Yeltminky.A!dll
Alert level:
severe
Worm:Win32/Yeltminky.A!rfn
Alert level:
severe