We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
VirTool:WinNT/Ghodow.A
Detected by Microsoft Defender Antivirus
Aliases: Rootkit.Win32.Agent.betm (Kaspersky) TR/Rootkit.Gen (Avira) Win32/Dalixi.A (ESET)
Summary
VirTool:WinNT/Ghodow.A is a detection for the driver component of the Win32/Ghodow family.
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as Microsoft Security Essentials, or the Microsoft Safety Scanner. For more information about using antivirus software, see http://www.microsoft.com/security/antivirus/av.aspx.