| Backdoor:MSIL/Bladabindi |
severe |
| Backdoor:Win32/FlyAgent.F |
severe |
| Backdoor:Win32/Kirts.A |
severe |
| Backdoor:Win32/Predator.J!rfn |
severe |
| Backdoor:Win32/Tofsee.T |
severe |
| Backdoor:Win32/Ursap!rfn |
severe |
| Behavior:Win32/MZPEMemoryArtifacts.C |
severe |
| Behavior:Win32/SmsTimeoutNoScans.A |
severe |
| BrowserModifier:Win32/Foxiebro |
high |
| BrowserModifier:Win32/Webalta |
high |
| Exploit:O97M/CVE-2017-0199.BEK!MTB |
severe |
| Exploit:O97M/CVE-2017-0199.BKS!MTB |
severe |
| Exploit:O97M/CVE-2017-11882!MTB |
severe |
| Exploit:O97M/CVE-2017-11882!rfn |
severe |
| HackTool:Win32/AutoKMS |
high |
| HackTool:Win32/AutoKMS!rfn |
high |
| HackTool:Win32/Keygen |
high |
| HackTool:Win32/LaZagne!rfn |
high |
| HackTool:Win32/NetCat |
high |
| HackTool:Win32/Virledi!rfn |
high |
| HackTool:Win32/Virledi.A |
high |
| Program:Win32/Ymacco.AA25 |
high |
| Program:Win32/Ymacco.AA44 |
high |
| Program:Win32/Ymacco.AA72 |
high |
| PWS:Win32/Lmir!rfn |
severe |
| PWS:Win32/Vidar |
severe |
| PWS:Win32/Zbot |
severe |
| Ransom:MacOS/Filecoder |
severe |
| Ransom:MSIL/Gorf |
severe |
| Ransom:Win32/Ako |
severe |
| Ransom:Win32/Avaddon |
severe |
| Ransom:Win32/Blocker |
severe |
| Ransom:Win32/Cobra |
severe |
| Ransom:Win32/Ergop |
severe |
| Ransom:Win32/Genasom |
severe |
| Ransom:Win32/Globeimposter |
severe |
| Ransom:Win32/LockBit |
severe |
| Ransom:Win32/STOP |
severe |
| SoftwareBundler:Win32/Prepscram |
high |
| SupportScam:JS/TechBrolo!rfn |
severe |
| Trojan:HTML/Phish.PH!MTB |
severe |
| Trojan:Java/Jrat!rfn |
severe |
| Trojan:Java/Tnega.AV!MTB |
severe |
| Trojan:MSIL/AgentTesla!MTB |
severe |
| Trojan:MSIL/AgentTesla.BK!MTB |
severe |
| Trojan:MSIL/AgentTesla.M!MTB |
severe |
| Trojan:MSIL/AgentTesla.MB!MSR |
severe |
| Trojan:MSIL/AntiWD.YA!rfn |
severe |
| Trojan:MSIL/Cryptor |
severe |
| Trojan:MSIL/FormBook.BK!MTB |
severe |
| Trojan:MSIL/Stealer.BK!MTB |
severe |
| Trojan:MSIL/Tnega.BK!MTB |
severe |
| Trojan:O97M/Obfuse!rfn |
severe |
| Trojan:PDF/Phish!MSR |
severe |
| Trojan:Script/Phonzy.A!ml |
severe |
| Trojan:Win32/Adrozek!BV |
severe |
| Trojan:Win32/Ashify.J!ibt |
severe |
| Trojan:Win32/Ashify.J!rfn |
severe |
| Trojan:Win32/AutoItinject!ibt |
severe |
| Trojan:Win32/Azorult.FW!rfn |
severe |
| Trojan:Win32/Bazarldr.MB!MSR |
severe |
| Trojan:Win32/Bluteal!rfn |
severe |
| Trojan:Win32/Bluteal.B!rfn |
severe |
| Trojan:Win32/Casdet!rfn |
severe |
| Trojan:Win32/CoinMiner.OR!rfn |
severe |
| Trojan:Win32/CryptInject |
severe |
| Trojan:Win32/DefenseEvasion!rfn |
severe |
| Trojan:Win32/Dofoil.STA |
severe |
| Trojan:Win32/Dynamer!ac |
severe |
| Trojan:Win32/Dynamer!rfn |
severe |
| Trojan:Win32/Emotet |
severe |
| Trojan:Win32/Emotet!ibt |
severe |
| Trojan:Win32/Emotet.AC!rfn |
severe |
| Trojan:Win32/Emotet.ARJ!rfn |
severe |
| Trojan:Win32/Emotet.DHF!rfn |
severe |
| Trojan:Win32/Execution!rfn |
severe |
| Trojan:Win32/Gandcrab.AF |
severe |
| Trojan:Win32/Generic!rfn |
severe |
| Trojan:Win32/Glupteba!atmn |
severe |
| Trojan:Win32/Glupteba.D!rfn |
severe |
| Trojan:Win32/Glupteba.MO!rfn |
severe |
| Trojan:Win32/InitialAccess!rfn |
severe |
| Trojan:Win32/IRCBot.RTU!MTB |
severe |
| Trojan:Win32/Masson.A!ac |
severe |
| Trojan:Win32/Masson.A!rfn |
severe |
| Trojan:Win32/Mokes.RM!MTB |
severe |
| Trojan:Win32/Molock.B |
severe |
| Trojan:Win32/Neop!rfn |
severe |
| Trojan:Win32/Occamy.A |
severe |
| Trojan:Win32/Occamy.AA |
severe |
| Trojan:Win32/Occamy.AB |
severe |
| Trojan:Win32/Occamy.B |
severe |
| Trojan:Win32/Occamy.C |
severe |
| Trojan:Win32/Occamy.CB4 |
severe |
| Trojan:Win32/Pynamer.A!ac |
severe |
| Trojan:Win32/Pynamer.A!rfn |
severe |
| Trojan:Win32/Ramnit.C |
severe |
| Trojan:Win32/RanumBot!MSR |
severe |
| Trojan:Win32/Skeeyah.A!rfn |
severe |
| Trojan:Win32/SpyNoon.SS!MTB |
severe |
| Trojan:Win32/Tnega!ml |
severe |
| Trojan:Win32/Trickbot!Core |
severe |
| Trojan:Win32/TrickBot.I |
severe |
| Trojan:Win32/Wrokni.C |
severe |
| Trojan:Win32/Ymacco.AA05 |
severe |
| Trojan:Win32/Ymacco.AA0B |
severe |
| Trojan:Win32/Ymacco.AA16 |
severe |
| Trojan:Win32/Ymacco.AA19 |
severe |
| Trojan:Win32/Ymacco.AA40 |
severe |
| Trojan:Win32/Ymacco.AA75 |
severe |
| Trojan:Win32/Ymacco.AA7B |
severe |
| Trojan:Win32/Ymacco.AA81 |
severe |
| Trojan:Win32/Ymacco.AA90 |
severe |
| Trojan:Win32/Ymacco.AAAF |
severe |
| Trojan:Win32/Ymacco.AAC3 |
severe |
| Trojan:Win32/Ymacco.AAEA |
severe |
| Trojan:Win32/Ymacco.AB13 |
severe |
| Trojan:Win32/Ymacco.AB39 |
severe |
| Trojan:Win32/Ymacco.AB56 |
severe |
| Trojan:Win32/Ymacco.AB6D |
severe |
| Trojan:Win32/Ymacco.AB9B |
severe |
| Trojan:Win32/Ymacco.ABD8 |
severe |
| Trojan:WinNT/Hookmoot |
severe |
| TrojanDownloader:JS/Nemucod!rfn |
severe |
| TrojanDownloader:O97M/Dornoe.A!rfn |
severe |
| TrojanDownloader:O97M/Emotet.PEC!MTB |
severe |
| TrojanDownloader:O97M/EncDoc.BK!MTB |
severe |
| TrojanDownloader:O97M/Xdoc.YB |
severe |
| TrojanDownloader:O97M/Zloader.BDK!MTB |
severe |
| TrojanDownloader:O97M/ZLoader.SS!MTB |
severe |
| TrojanDownloader:Win32/Banload |
severe |
| TrojanDownloader:Win32/Banload!rfn |
severe |
| TrojanDownloader:Win32/Dimegup.A |
severe |
| TrojanDownloader:Win32/Troxen!rts |
high |
| TrojanDownloader:Win32/Zurgop.MB!MSR |
severe |
| TrojanDropper:Win32/Woozlist.B |
severe |
| TrojanSpy:MSIL/AgentTesla.BK!MTB |
severe |
| VirTool:MSIL/CryptInject |
severe |
| VirTool:MSIL/Injector |
severe |
| VirTool:MSIL/Loksec!rfn |
severe |
| VirTool:Win32/CeeInject.ANO!rfn |
severe |
| VirTool:Win32/Ymacco.AA78 |
severe |
| VirTool:Win64/Atosev.A |
severe |
| VirTool:Win64/CobaltStrike.A |
severe |
| Worm:Win32/Copali.B |
severe |
| Worm:Win32/Dorkbot |
severe |
| Worm:Win32/Hamweq.A |
severe |
| Worm:Win32/Lefgroo.A |
severe |
| Worm:Win32/Lightmoon |
severe |
| Worm:Win32/Mocmex |
severe |
| Worm:Win32/Nuqel!rfn |
severe |
| Worm:Win32/Phorpiex |
severe |