Skip to main content
Skip to main content
Microsoft Security Intelligence

Change logs for security intelligence update version 1.377.965.0

This page lists newly added and updated threat detections included in security intelligence updates for Microsoft Defender Antivirus and other Microsoft antimalware. If you don’t find the latest security intelligence update version in the selector below, please refresh this page or let us know us know through the feedback smiley.

Looking for the latest update? Download the latest update

Released on

10/28/2022 9:21:22 PM

Added threat detections

Name Severity
Backdoor:Win32/Delf.BA!MTB severe
Behavior:Win32/RegsvrOrRundllCreatesDxdiag.A severe
Exploit:O97M/CVE-2017-0199.SSA!MTB severe
Exploit:O97M/CVE-2017-8570.PDC severe
PWS:MSIL/Dcstl.psyM!MTB severe
PWS:MSIL/Formbook.psyA!MTB severe
Trojan:AndroidOS/SpyBanker!MTB severe
Trojan:MSIL/AgentTesla.ABE!MTB severe
Trojan:MSIL/Blustealer.MA!MTB severe
Trojan:MSIL/Blustealer.MB!MTB severe
Trojan:MSIL/BruteForce.psyA!MTB severe
Trojan:MSIL/ClipBanker.Y!MTB severe
Trojan:MSIL/Dcstl.psyO!MTB severe
Trojan:MSIL/Dcstl.psyP!MTB severe
Trojan:MSIL/Dcstl.psyR!MTB severe
Trojan:MSIL/Dcstl.psyV!MTB severe
Trojan:MSIL/Dcstl.psyW!MTB severe
Trojan:MSIL/Dcstl.psyX!MTB severe
Trojan:MSIL/Dropper.psyA!MTB severe
Trojan:MSIL/Injector.psyA!MTB severe
Trojan:MSIL/Injector.psyT!MTB severe
Trojan:MSIL/Polyransom.psyA!MTB severe
Trojan:MSIL/Polyransom.psyC!MTB severe
Trojan:MSIL/Polyransom.psyE!MTB severe
Trojan:MSIL/Polyransom.psyF!MTB severe
Trojan:MSIL/RedLine.ABA!MTB severe
Trojan:MSIL/Redline.GJS!MTB severe
Trojan:MSIL/Redline.psyB!MTB severe
Trojan:MSIL/SpySnake.MP!MTB severe
Trojan:MSIL/Stealer.psyA!MTB severe
Trojan:Win32/KillAV.A!MTB severe
Trojan:Win32/NetWire.AP!MTB severe
Trojan:Win32/Redline.GJS!MTB severe
Trojan:Win32/Redline.GJT!MTB severe
Trojan:Win32/Redline.MCR!MTB severe
Trojan:Win32/Trickbot.MA!MTB severe
Trojan:Win32/WinLNK.SVO!MTB severe
Trojan:Win32/Zusy.RE!MTB severe
Trojan:Win64/Dcstl.MA!MTB severe
TrojanDownloader:JS/Remcos.PDG!MTB severe
TrojanDownloader:MSIL/AgentTesla.I!MTB severe
TrojanDownloader:MSIL/AsyncRAT.AL!MTB severe
TrojanDownloader:MSIL/AsyncRAT.AR!MTB severe
TrojanDownloader:MSIL/BitRAT.L!MTB severe
TrojanDownloader:MSIL/BitRAT.M!MTB severe
TrojanDownloader:MSIL/Formbook.KAM!MTB severe
TrojanDownloader:MSIL/RemcosRAT.H!MTB severe
TrojanDownloader:MSIL/SmokeLoader.H!MTB severe

Updated threat detections

Name Severity
Adware:Win32/Neoreklami high
Adware:Win32/Neoreklami!MSR high
Backdoor:MSIL/Remcos.RA severe
Backdoor:Win32/Diffyndor severe
Backdoor:Win32/Remcos!mclg severe
Backdoor:Win32/Tofsee.T severe
Exploit:O97M/CVE-2017-0199.AL!MTB severe
Exploit:O97M/CVE-2017-11882.AL!MTB severe
Exploit:O97M/CVE-2017-11882.RVR severe
Exploit:O97M/CVE-2017-11882.ST!MTB severe
Program:Win32/Vigram.A high
PWS:Win32/Lmir!rfn severe
PWS:Win32/Ymacco.AA42 severe
Ransom:Win32/Crypmod!mclg severe
Trojan:BAT/Starter.G severe
Trojan:HTML/Phish!MSR severe
Trojan:HTML/Phish.QS!MTB severe
Trojan:HTML/Qakbot.ASM severe
Trojan:MSIL/AgentTesla!MTB severe
Trojan:MSIL/AgentTesla.ABA!MTB severe
Trojan:MSIL/AgentTesla.AID severe
Trojan:MSIL/AgentTesla.AII severe
Trojan:MSIL/AgentTesla.ALY!MTB severe
Trojan:MSIL/AgentTesla.AML severe
Trojan:MSIL/AgentTesla.AMO severe
Trojan:MSIL/AgentTesla.AMQ severe
Trojan:MSIL/AgentTesla.RTS!MTB severe
Trojan:MSIL/AgentTesla.ST!MTB severe
Trojan:MSIL/AveMaria!MTB severe
Trojan:MSIL/AveMaria.ST!MTB severe
Trojan:MSIL/FormBook.ST!MTB severe
Trojan:MSIL/Lazy!MTB severe
Trojan:MSIL/Lokibot.ALY!MTB severe
Trojan:MSIL/RedLine!MTB severe
Trojan:MSIL/SnakeKeylogger.ALY!MTB severe
Trojan:MSIL/SpySnake.MB!MTB severe
Trojan:MSIL/Tnega.ALY!MTB severe
Trojan:MSIL/Tnega.KA!MTB severe
Trojan:MSIL/Tnega.ST!MTB severe
Trojan:MSIL/Zelda.PZA!MTB severe
Trojan:O97M/Obfuse!rfn severe
Trojan:PDF/Phish.AME severe
Trojan:PowerShell/Malgent!MSR severe
Trojan:Script/Sabsik.FL.B!ml severe
Trojan:VBS/Nemucod.RY!MTB severe
Trojan:Win32/Bluteal!rfn severe
Trojan:Win32/Casdet severe
Trojan:Win32/Convagent!MSR severe
Trojan:Win32/CryptInject severe
Trojan:Win32/CryptInject!MSR severe
Trojan:Win32/CryptInject.DO!MTB severe
Trojan:Win32/DelfInject.SM severe
Trojan:Win32/Disco!mclg severe
Trojan:Win32/DllCheck.A!MSR severe
Trojan:Win32/Dynamer severe
Trojan:Win32/Ekstak!MTB severe
Trojan:Win32/Emotet.AC!bit severe
Trojan:Win32/FakeFolder!MTB severe
Trojan:Win32/Fragtor!mclg severe
Trojan:Win32/Genasom severe
Trojan:Win32/Gozi.RD severe
Trojan:Win32/GuLoader.ST!MTB severe
Trojan:Win32/Leivion.S severe
Trojan:Win32/Leonem severe
Trojan:Win32/Leonem.D86 severe
Trojan:Win32/Nymaim!MTB severe
Trojan:Win32/Occamy.AA severe
Trojan:Win32/Occamy.C severe
Trojan:Win32/Occamy.C9A severe
Trojan:Win32/Phonzy.C!ml severe
Trojan:Win32/Qakbot!MSR severe
Trojan:Win32/Qakbot.AT!MTB severe
Trojan:Win32/QbotLNK.SA severe
Trojan:Win32/Redline!MSR severe
Trojan:Win32/Redline!MTB severe
Trojan:Win32/Seheq!rfn severe
Trojan:Win32/Skeeyah.A severe
Trojan:Win32/SmokeLoader!MTB severe
Trojan:Win32/SpyNoon.RTS!MTB severe
Trojan:Win32/Tiggre severe
Trojan:Win32/Tiggre!rfn severe
Trojan:Win32/Tisar.A severe
Trojan:Win32/Tisifi.B severe
Trojan:Win32/Tisifi.RA severe
Trojan:Win32/Tisifi.RR severe
Trojan:Win32/Tnega!ml severe
Trojan:Win32/Tnega!MSR severe
Trojan:Win32/Tnega.KA!MTB severe
Trojan:Win32/Tnega.RTS!MTB severe
Trojan:Win32/Tnega.ST!MTB severe
Trojan:Win32/VBInject.AM severe
Trojan:Win32/WinLNK!MSR severe
Trojan:Win32/WinLNK.lnk!MSR severe
Trojan:Win32/WinLNK.PDZ severe
Trojan:Win32/Ymacco.ABF2 severe
Trojan:Win32/Zenpak!MTB severe
Trojan:Win64/BypassUAC!MTB severe
Trojan:Win64/Fabookie!MTB severe
Trojan:Win64/IcedID.MU!MTB severe
Trojan:Win64/Trickbot.AC severe
TrojanDownloader:O97M/Obfuse.ER severe
TrojanDownloader:VBS/Obfuse.KA!MTB severe
TrojanDownloader:Win32/Garveep.D severe
TrojanDownloader:Win32/Proflag.WE severe
TrojanDownloader:Win32/Small severe
TrojanDropper:HTML/Obfuse.PAJ severe
TrojanDropper:HTML/Qakbot.PDC severe
TrojanDropper:JS/Obfuse.PAAA severe
TrojanSpy:AndroidOS/SmsSpy.J!MTB severe
TrojanSpy:MSIL/Stealer!mclg severe
VirTool:Win32/CeeInject severe
VirTool:Win32/Obfuscator.ALX severe
VirTool:Win32/Obfuscator.QV severe