Skip to main content
Skip to main content
Microsoft Security Intelligence

Change logs for security intelligence update version 1.443.372.0

This page lists newly added and updated threat detections included in security intelligence updates for Microsoft Defender Antivirus and other Microsoft antimalware. If you don’t find the latest security intelligence update version in the selector below, please refresh this page or let us know us know through the feedback smiley.

Looking for the latest update? Download the latest update

Released on

12/28/2025 8:51:25 AM

Added threat detections

Name Severity
HackTool:PowerShell/PowerSploit!AMTB high
Ransom:Win32/NefilimGo!rfn severe

Updated threat detections

Name Severity
Adware:Win32/Tnega high
Backdoor:MSIL/Webshell.BB!MTB severe
Backdoor:PHP/Webshell severe
Backdoor:Win32/Androm.BQ!MTB severe
Backdoor:Win32/Berbew.AA!MTB severe
Backdoor:Win32/Coroxy!rfn severe
Backdoor:Win32/Koceg!rfn severe
Backdoor:Win32/Padodor.SK!MTB severe
Exploit:Python/CVE-2017-6736!MSR severe
Exploit:Win32/ShellCode!rfn severe
HackTool:Python/Impacket!MSR high
HackTool:Win32/AndroidUnlocker!MTB high
HackTool:Win32/Crack!MTB high
HackTool:Win32/Crack!rfn high
HackTool:Win32/Keygen!AMTB high
HackTool:Win32/Meterpreter high
HackTool:Win32/Mimikatz!rfn high
HackTool:Win32/Patcher high
Ransom:Linux/BlackSuit!rfn severe
Ransom:MSIL/Filecoder!rfn severe
Ransom:Win32/BlackCat!rfn severe
Ransom:Win32/Cactus!rfn severe
Ransom:Win32/Clop!rfn severe
Ransom:Win32/ContiCrypt!rfn severe
Ransom:Win32/Filecoder!rfn severe
Ransom:Win32/Lockbit!rfn severe
Ransom:Win32/Play!rfn severe
Trojan:AndroidOS/AVerseFalc!rfn severe
Trojan:BAT/Qakbot!rfn severe
Trojan:HTML/Qakbot!rfn severe
Trojan:INF/AutoRun!AMTB severe
Trojan:JS/Cryxos.ATMB!MTB severe
Trojan:JS/FSAutcik severe
Trojan:JS/ObfuseLNK!rfn severe
Trojan:JS/Qakbot!rfn severe
Trojan:JS/QakbotLNK!rfn severe
Trojan:JS/Tnega!rfn severe
Trojan:Linux/Multiverze!rfn severe
Trojan:MSIL/AsyncRat!rfn severe
Trojan:MSIL/Barys.AR!MTB severe
Trojan:MSIL/CoinMiner!rfn severe
Trojan:MSIL/IcedID!rfn severe
Trojan:MSIL/Polazert!rfn severe
Trojan:O97M/DDownloader!rfn severe
Trojan:PDF/Phish!rfn severe
Trojan:PDF/Ursnif.RV!MTB severe
Trojan:PowerShell/Obfuse!rfn severe
Trojan:PowerShell/Pklotide.A severe
Trojan:PowerShell/Poisfrdns severe
Trojan:Script/Multiverze!rfn severe
Trojan:VBS/Emotet!rfn severe
Trojan:VBS/Obfuse!rfn severe
Trojan:VBS/Qakbot!rfn severe
Trojan:Win32/Alevaul!rfn severe
Trojan:Win32/Amadey.NB!MTB severe
Trojan:Win32/Blackmoon.RPJ!MTB severe
Trojan:Win32/Blihan.MA!MTB severe
Trojan:Win32/CardSpy.DA!MTB severe
Trojan:Win32/Casdet!rfn severe
Trojan:Win32/Ceevee severe
Trojan:Win32/CobaltStrike!rfn severe
Trojan:Win32/CoreWarrior.DA!MTB severe
Trojan:Win32/CryInfector.MBFH!MTB severe
Trojan:Win32/CryptInject!rfn severe
Trojan:Win32/DllInject!rfn severe
Trojan:Win32/Egairtigado!rfn severe
Trojan:Win32/Etset!rfn severe
Trojan:Win32/Fareit.VB!MTB severe
Trojan:Win32/Fauppod!rfn severe
Trojan:Win32/Fragtor.GKN!MTB severe
Trojan:Win32/Fragtor.SPIL!MTB severe
Trojan:Win32/GenCodeInjected!BV severe
Trojan:Win32/Gozi!rfn severe
Trojan:Win32/Gupboot!rfn severe
Trojan:Win32/Kepavll!rfn severe
Trojan:Win32/Korpode.A!dha severe
Trojan:Win32/LatenBot.EA!MTB severe
Trojan:Win32/Latrodectus!rfn severe
Trojan:Win32/Lauri.ALI!MTB severe
Trojan:Win32/Leonem!rfn severe
Trojan:Win32/Malgent!AMTB severe
Trojan:Win32/Malgent!MSR severe
Trojan:Win32/Malgent!MTB severe
Trojan:Win32/Malgent!rfn severe
Trojan:Win32/MalLoader!rfn severe
Trojan:Win32/MereTam!rfn severe
Trojan:Win32/Midie.LMC!MTB severe
Trojan:Win32/Molerats.LKV!MTB severe
Trojan:Win32/Neoreblamy.NRJ!MTB severe
Trojan:Win32/Neoreblamy.NRL!MTB severe
Trojan:Win32/Otfrem.A!MTB severe
Trojan:Win32/Pomal!rfn severe
Trojan:Win32/Povertystealer!rfn severe
Trojan:Win32/Predator!rfn severe
Trojan:Win32/Qakbot!rfn severe
Trojan:Win32/QQPass.BSA!MTB severe
Trojan:Win32/QQPass.G!MTB severe
Trojan:Win32/Seheq!rfn severe
Trojan:Win32/Sfuzuan.EN!MTB severe
Trojan:Win32/ShellcodeLoader.AHD!MTB severe
Trojan:Win32/ShortSeek!rfn severe
Trojan:Win32/Skeeyah severe
Trojan:Win32/Smokeloader!rfn severe
Trojan:Win32/SmokeLoader.FT!MTB severe
Trojan:Win32/Suschil!rfn severe
Trojan:Win32/Swisyn.ADA!MTB severe
Trojan:Win32/Swisyn.ASW!MTB severe
Trojan:Win32/Tiggre!rfn severe
Trojan:Win32/Tnega!MSR severe
Trojan:Win32/Urelas.WE!MTB severe
Trojan:Win32/Vankul!rfn severe
Trojan:Win32/VBClone.GTT!MTB severe
Trojan:Win32/Vilsel.A!MTB severe
Trojan:Win32/Yomal!rfn severe
Trojan:Win32/Zbot.rmwh!MTB severe
Trojan:Win32/Znyonm!rfn severe
Trojan:Win32/Zusy.BL!MTB severe
Trojan:Win32/Zusy.DV!MTB severe
Trojan:Win64/BlackWidow!rfn severe
Trojan:Win64/Cerbu!MTB severe
Trojan:Win64/Cobaltstrike!rfn severe
Trojan:Win64/Crypt.SN!MTB severe
Trojan:Win64/CryptInject!rfn severe
Trojan:Win64/DisguisedXMRigMiner severe
Trojan:Win64/Emotetcrypt!rfn severe
Trojan:Win64/EmotetPacker!rfn severe
Trojan:Win64/FSAutcik severe
Trojan:Win64/Grandoreiro.psyP!MTB severe
Trojan:Win64/IcedID!rfn severe
Trojan:Win64/Injector.SXD!MTB severe
Trojan:Win64/Kryptik!rfn severe
Trojan:Win64/Malgent!MSR severe
Trojan:Win64/Meterpreter!rfn severe
Trojan:Win64/Oysterloader!rfn severe
Trojan:Win64/Rootkit!rfn severe
Trojan:Win64/Rozena!rfn severe
Trojan:Win64/StealC.PGSD!MTB severe
Trojan:Win64/SystemBC!rfn severe
Trojan:Win64/UACBypassExp!rfn severe
Trojan:Win64/VMProtect!MTB severe
Trojan:Win64/WinGoObfusc!rfn severe
Trojan:Win64/XmrigMiner.RP!MTB severe
Trojan:Win64/XWorm!MTB severe
Trojan:Win64/Xworm.ZBO!MTB severe
Trojan:Win64/Zusy!MTB severe
TrojanDownloader:BAT/QakBotLoader!rfn severe
TrojanDownloader:JS/Nemucod severe
TrojanDownloader:JS/Qakbot!rfn severe
TrojanDownloader:MSIL/Mallox!rfn severe
TrojanDownloader:O97M/Emotet!rfn severe
TrojanDownloader:PowerShell/Obfuse!rfn severe
TrojanDownloader:Win32/Renos!rfn severe
TrojanDownloader:Win32/ShortSeek!rfn severe
TrojanDropper:Win32/Muldrop.V!MTB severe
TrojanDropper:Win32/Salgorea.AI!MTB severe
Worm:MSIL/Lardosy severe
Worm:Win32/Autorun.DU!MTB severe
Worm:Win32/Brontok!rfn severe
Worm:Win32/Gamarue!rfn severe
Worm:Win32/Mofei.ENAW!MTB severe
Worm:Win32/Mofksys!rfn severe
Worm:Win32/Mofksys.RND!MTB severe
Worm:Win32/Nuqel!rfn severe
Worm:Win32/Pushbot!rfn severe