We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/Mitglieder.DD
Detected by Microsoft Defender Antivirus
Aliases: Win32/Glieder.CB (CA) Email-Worm.Win32.Bagle.eg (Kaspersky) W32/Bagle.dm (McAfee) Trojan.Lodear (Symantec) TROJ_BAGLE.AB (Trend Micro)
Summary
TrojanDownloader:Win32/Mitglieder.DD downloads malicious executable files from various URLs and then runs those files on the host computer. TrojanDownloader:Win32/Mitglieder.DD injects a dll into the explorer.exe process, which could allow the trojan to bypass local software-based firewall policies.
TrojanDownloader:Win32/Mitglieder.DD may download and run malicious software from various URLs. Recovery from this situation may require measures beyond removing only TrojanDownloader:Win32/Mitglieder.DD itself. For this reason, attempting manual removal of TrojanDownloader:Win32/Mitglieder.DD is not recommended. To detect and remove this trojan as well as other malicious software, run a full-system scan with an up-to-date antivirus product such as the Microsoft Malicious Software Removal Tool (http://www.microsoft.com/security/malwareremove/default.mspx) or the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, visit http://www.microsoft.com/athome/security/downloads/default.mspx