We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanSpy:Win32/Delf.T
Detected by Microsoft Defender Antivirus
Aliases: Trojan.Kardphisher (Symantec)
Summary
TrojanSpy:Win32/Delf.T masquerades as a Windows activation control, blocking access to Task Manager, and forcibly rebooting the system when impacted users attempt to bypass the dialog box displayed by the Trojan.