Skip to main content
Skip to main content

Change logs for security intelligence update version 1.445.160.0

This page lists newly added and updated threat detections included in security intelligence updates for Microsoft Defender Antivirus and other Microsoft antimalware. If you don’t find the latest security intelligence update version in the selector below, please refresh this page or let us know us know through the feedback smiley.

Looking for the latest update? Download the latest update

Released on

2/20/2026 5:28:07 PM

Added threat detections

Name Severity
Behavior:Win32/SuspAutoitExec.B2 severe
Behavior:Win32/SuspEtherRpcConn.A severe
Phish:HTML/FakeLogin.PABA!MTB severe
Trojan:HTML/Obfuse.ADZ!MTB severe
Trojan:HTML/Phish.SLPB!MTB severe
Trojan:HTML/Phish.SLPD!MTB severe
Trojan:HTML/Redirector.MSS!MTB severe
Trojan:JS/Redirector.APR!MTB severe
Trojan:MSIL/Zusy.SJ!MTB severe
Trojan:PowerShell/Runner.PGPR!MTB severe
Trojan:Win32/Coroxy.MKX!MTB severe
Trojan:Win64/Mikey.AXC!MTB severe
Trojan:Win64/Rhadamanthys.NTT!MTB severe
Trojan:Win64/Tedy.PGTE!MTB severe
TrojanDownloader:PowerShell/Boxter.TSI!MTB severe

Updated threat detections

Name Severity
Adware:Win32/Agent high
Adware:Win32/Tnega high
Adware:Win32/Tnega!MSR high
Backdoor:Linux/Gafgyt!rfn severe
Backdoor:Linux/Mirai!rfn severe
Backdoor:PHP/C99shell.I severe
Backdoor:PHP/LaudanumProxy!AMTB severe
Backdoor:PHP/ShellAttckPP.A severe
Backdoor:PHP/Uploader.A severe
Backdoor:Python/Meterpreter.B severe
Backdoor:Win32/Coroxy!rfn severe
Backdoor:Win64/Noiserv!rfn severe
Backdoor:Win64/RomComLoader!rfn severe
BrowserModifier:MSIL/MediaArena high
BrowserModifier:Win32/Shafmia high
Exploit:HTML/Shellcode.G!MSR severe
Exploit:JS/ShellCode.gen severe
Exploit:JS/ShellCode.S severe
Exploit:PHP/CVE-2005-4449!AMTB severe
Exploit:Ruby/CVE-2009-2990!AMTB severe
Exploit:Win32/Tudimons.A!dha severe
Exploit:Win64/CVE-2022-3699.B!MSR severe
FriendlyFiles low
HackTool:PowerShell/Powerpuff.A!MTB high
HackTool:PowerShell/PowerSploit.E high
HackTool:Python/Impacket!AMTB high
HackTool:Python/Impacket!MSR high
HackTool:Python/Impacket!MTB high
HackTool:Python/Impacket.AAI!MSR high
HackTool:Python/Impacket.AL high
HackTool:Win32/Activator high
HackTool:Win32/Activator!MTB high
HackTool:Win32/AndroidUnlocker!MSR high
HackTool:Win32/AndroidUnlocker!MTB high
HackTool:Win32/crack high
HackTool:Win32/Crack!MTB high
HackTool:Win32/Defendercontrol high
HackTool:Win32/DllInjector!MTB high
HackTool:Win32/DongleHack high
HackTool:Win32/GameHack high
HackTool:Win32/GameHack!MTB high
HackTool:Win32/Keygen high
HackTool:Win32/Keygen!AMTB high
HackTool:Win32/Malgent high
HackTool:Win32/Mimikatz.AA!MTB high
HackTool:Win32/Offact high
HackTool:Win32/Patch high
HackTool:Win32/Patcher high
HackTool:Win32/Patcher!MTB high
HackTool:Win32/ProductKey.G!MSR high
HackTool:Win32/Tnega!MTB high
HackTool:Win32/Unlocker!MSR high
HackTool:Win32/Wirelesskeyview high
HackTool:Win64/AutoKms high
HackTool:Win64/ConnectWise!MTB high
HackTool:Win64/Meterpreter high
HackTool:Win64/PswDump!MTB high
HackTool:Win64/RDPWrap!MTB high
Joke:Win32/PopupPrank moderate
Misleading:Win32/Lodi high
Misleading:Win32/Lodi!MSR high
Misleading:Win32/Malgent!AMTB high
PWS:MSIL/Browsstl!rfn severe
PWS:Win32/Fareit!rfn severe
Ransom:Linux/Buhti.A!MTB severe
Ransom:Linux/Conti!rfn severe
Ransom:Win32/BlackCat!rfn severe
Ransom:Win32/Trigona!rfn severe
Ransom:Win32/Wannaren!rfn severe
Spyware:AndroidOS/Multiverze!rfn high
Trojan:AndroidOS/AVerseFalc!rfn severe
Trojan:BAT/KillAV!MTB severe
Trojan:BAT/Qakbot!rfn severe
Trojan:HTML/Phish!MSR severe
Trojan:HTML/Phish.SLPC!MTB severe
Trojan:HTML/Phish.SLPD!MTB severe
Trojan:HTML/Redirector.MSS!MTB severe
Trojan:HTML/Tivso.MKZ!MTB severe
Trojan:JS/Malgent!MSR severe
Trojan:JS/Obfuse!MSR severe
Trojan:JS/Redirector.AA!AMTB severe
Trojan:JS/Redirector.PH severe
Trojan:Linux/Miners.A severe
Trojan:Linux/Multiverze!rfn severe
Trojan:Linux/SAgnt!MSR severe
Trojan:MacOS/Multiverze!rfn severe
Trojan:MSIL/Bladabindi!rfn severe
Trojan:MSIL/DllInject!rfn severe
Trojan:MSIL/Gentromal.A severe
Trojan:MSIL/Heracles!MTB severe
Trojan:MSIL/Polazert!rfn severe
Trojan:MSIL/PureLog!MTB severe
Trojan:MSIL/PureLogStealer.RVE!MTB severe
Trojan:MSIL/Zusy.SJ!MTB severe
Trojan:O97M/DDownloader!rfn severe
Trojan:PDF/Malgent!MSR severe
Trojan:PDF/Ursinf!rfn severe
Trojan:PowerShell/Malgent!MSR severe
Trojan:Python/Multiverze severe
Trojan:Python/Multiverze!rfn severe
Trojan:Script/CoinMiner!rfn severe
Trojan:Script/Malgent!MSR severe
Trojan:Script/Multiverze!rfn severe
Trojan:VBS/Emotet!rfn severe
Trojan:VBS/Starter.PGST!MTB severe
Trojan:Win32/Alevaul!rfn severe
Trojan:Win32/AutoitInject.HNM!MTB severe
Trojan:Win32/AutoitShellInj!rfn severe
Trojan:Win32/Bluteal!rfn severe
Trojan:Win32/Casdet!rfn severe
Trojan:Win32/CoinMiner!MSR severe
Trojan:Win32/CommandAndControl!rfn severe
Trojan:Win32/CoreWarrior.DA!MTB severe
Trojan:Win32/Coroxy!rfn severe
Trojan:Win32/CryptInject severe
Trojan:Win32/Cryptinject!MTB severe
Trojan:Win32/DllInject!rfn severe
Trojan:Win32/Dynamer!ac severe
Trojan:Win32/Dynamer!dtc severe
Trojan:Win32/Egairtigado!rfn severe
Trojan:Win32/Emali.A!rfn severe
Trojan:Win32/Etset!rfn severe
Trojan:Win32/Fauppod!rfn severe
Trojan:Win32/Grandoreiro!rfn severe
Trojan:Win32/HijackLoader!MTB severe
Trojan:Win32/Hitbrovi!rfn severe
Trojan:Win32/IcedIdLNK!rfn severe
Trojan:Win32/Kepavll!rfn severe
Trojan:Win32/Leonem severe
Trojan:Win32/Leonem!rfn severe
Trojan:Win32/Malagent severe
Trojan:Win32/Malgent severe
Trojan:Win32/Malgent!AMTB severe
Trojan:Win32/Malgent!MSR severe
Trojan:Win32/Malgent!MTB severe
Trojan:Win32/Malgent!rfn severe
Trojan:Win32/Malgnet severe
Trojan:Win32/Mamson.A!ac severe
Trojan:Win32/Nukesped.MK!MTB severe
Trojan:Win32/Occamy.C51 severe
Trojan:Win32/Occamy.CFB severe
Trojan:Win32/Orsam!rts high
Trojan:Win32/PhantomStealer.RV!MTB severe
Trojan:Win32/Pomal!rfn severe
Trojan:Win32/Predator!rfn severe
Trojan:Win32/Qakbot!rfn severe
Trojan:Win32/Remcos!rfn severe
Trojan:Win32/Rozena!rfn severe
Trojan:Win32/Salgorea.C!MTB severe
Trojan:Win32/ScriptSpy severe
Trojan:Win32/Seheq!rfn severe
Trojan:Win32/ShortSeek!rfn severe
Trojan:Win32/Skeeyah severe
Trojan:Win32/Skeeyah.A!rfn severe
Trojan:Win32/Skeeyah.B!rfn severe
Trojan:Win32/Supma.A severe
Trojan:Win32/Suschil!rfn severe
Trojan:Win32/Swrort!rfn severe
Trojan:Win32/Tiggre!rfn severe
Trojan:Win32/Tnega!ml severe
Trojan:Win32/Tnega!MTB severe
Trojan:Win32/Totbrick!MTB severe
Trojan:Win32/Vagger!rfn severe
Trojan:Win32/VBKrypt.AS!MTB severe
Trojan:Win32/Vindor!rfn severe
Trojan:Win32/VMProtect!MTB severe
Trojan:Win32/WinLNK!rfn severe
Trojan:Win32/WinLNKRun!rfn severe
Trojan:Win32/Yomal!rfn severe
Trojan:Win32/Znyonm!rfn severe
Trojan:Win64/Bruterat!rfn severe
Trojan:Win64/CobaltStrike!MTB severe
Trojan:Win64/CobaltStrike!rfn severe
Trojan:Win64/CoinMiner!rfn severe
Trojan:Win64/Donut!rfn severe
Trojan:Win64/EmotetPacker!rfn severe
Trojan:Win64/FSAutcik severe
Trojan:Win64/IcedID!rfn severe
Trojan:Win64/Injector severe
Trojan:Win64/Latrodectus!rfn severe
Trojan:Win64/Malgent!MSR severe
Trojan:Win64/Raccoon!MTB severe
Trojan:Win64/ShellcodeRunner!MTB severe
Trojan:Win64/Tedy!MTB severe
Trojan:Win64/VidarStealer.PGVS!MTB severe
Trojan:Win64/ZLoader!rfn severe
Trojan:Win64/Zusy.KKB!MTB severe
TrojanDownloader:BAT/Qakbot!rfn severe
TrojanDownloader:JS/Nemucod.AAD severe
TrojanDownloader:JS/Nemucod.HX severe
TrojanDownloader:JS/Qakbot!rfn severe
TrojanDownloader:Linux/Malgent!MSR severe
TrojanDownloader:O97M/Adnel severe
TrojanDownloader:O97M/Donoff severe
TrojanDownloader:O97M/Donoff.CD severe
TrojanDownloader:O97M/Donoff.CJ severe
TrojanDownloader:O97M/Donoff.DE severe
TrojanDownloader:O97M/Emotet!rfn severe
TrojanDownloader:VBS/CoinMiner severe
TrojanDownloader:VBS/Donvibs.C severe
TrojanDownloader:VBS/Donvibs.F severe
TrojanDownloader:VBS/Furmbam.A severe
TrojanDownloader:Win64/BumbleBee!rfn severe
TrojanDownloader:X97M/Donoff severe
TrojanDropper:O97M/Farheyt.C severe
TrojanDropper:O97M/Farheyt.F severe
TrojanDropper:PowerShell/Doprimm!rfn severe
TrojanDropper:Win32/Floxif!pz severe
TrojanDropper:Win32/Malgent!MSR severe
VirTool:PHP/Remeshelsz severe
VirTool:Win64/CVE-2024-30085!rfn severe
Virus:Win64/Expiro!rfn severe
Worm:Win32/Ippedo.I severe
Worm:Win32/Mofksys!rfn severe