Skip to main content
Skip to main content

Change logs for security intelligence update version 1.449.362.0

This page lists newly added and updated threat detections included in security intelligence updates for Microsoft Defender Antivirus and other Microsoft antimalware. If you don’t find the latest security intelligence update version in the selector below, please refresh this page or let us know us know through the feedback smiley.

Looking for the latest update? Download the latest update

Released on

4/29/2026 9:18:58 PM

Added threat detections

Name Severity
Backdoor:MSIL/PureLog.AAA!AMTB severe
HackTool:Win32/cloudflared.A high
HackTool:Win32/WinDivert!MTB high
Phish:HTML/FakeAlert.PA!MTB severe
Phish:HTML/FakeLogin.PHE!MTB severe
Ransom:Linux/Vect!AMTB severe
Ransom:Win32/InterLock.A severe
Ransom:Win32/InterLock.A severe
Trojan:AIGen/Sandworm.A severe
Trojan:AIGen/Sandworm.A severe
Trojan:BAT/LotusWiper.B severe
Trojan:BAT/MalScript.I!AMTB severe
Trojan:BAT/RedlineStarter!AMTB severe
Trojan:HTML/Cryxos.VD!MTB severe
Trojan:HTML/FakeLogin.STG!MSR severe
Trojan:HTML/FBScam.B!AMTB severe
Trojan:HTML/ScrInject.VDB!MTB severe
Trojan:JS/GlassWorm.PAA!MTB severe
Trojan:MSIL/ArtemisLoader.AAA!AMTB severe
Trojan:MSIL/BlackLineStealer.AA!AMTB severe
Trojan:MSIL/BrowserStealer.AAA!AMTB severe
Trojan:MSIL/Heracles.BAQ!MTB severe
Trojan:MSIL/KeyLogger.AAB!AMTB severe
Trojan:MSIL/MassLogger.ARM!MTB severe
Trojan:MSIL/PhantomStealer.SDHF!MTB severe
Trojan:MSIL/QuasarRat.AAC!AMTB severe
Trojan:MSIL/Rozena.SX!MTB severe
Trojan:MSIL/ShellcodeRunner.SXO!MTB severe
Trojan:MSIL/SnakeKeylogger.AAA!AMTB severe
Trojan:MSIL/XWorm.AAC!AMTB severe
Trojan:PDF/MalPDForm.B!AMTB severe
Trojan:PowerShell/Boxter.AC!AMTB severe
Trojan:PowerShell/Remcos.BF!MTB severe
Trojan:PowerShell/XWorm.SAB!MSR severe
Trojan:Python/LoneNone.AF!MTB severe
Trojan:Python/LoneNone.AH!MTB severe
Trojan:Python/LoneNone.AI!MTB severe
Trojan:Win32/Androm.BAH!MTB severe
Trojan:Win32/Androm.BAS!MTB severe
Trojan:Win32/ClickFix.SFAB severe
Trojan:Win32/ClickFix.SFAB severe
Trojan:Win32/ClickFix.SFAC1 severe
Trojan:Win32/ClickFix.SFAC1 severe
Trojan:Win32/Farfli.VD!MTB severe
Trojan:Win32/GuLoader.REU!MTB severe
Trojan:Win32/Neoreblamy.NVZ!MTB severe
Trojan:Win32/NukeSysApp severe
Trojan:Win32/Valak.AA!AMTB severe
Trojan:Win32/ValleyRat.APR!AMTB severe
Trojan:Win64/Aotera.RVE!MTB severe
Trojan:Win64/AstralPastel!MTB severe
Trojan:Win64/Clipbanker.AHA!MTB severe
Trojan:Win64/ClipBanker.NB!MTB severe
Trojan:Win64/ClipBanker.NP!MTB severe
Trojan:Win64/Convagent.AHA!MTB severe
Trojan:Win64/CredentialDumper!MTB severe
Trojan:Win64/CRStealer.AAA!AMTB severe
Trojan:Win64/Donut.PAB!MTB severe
Trojan:Win64/ExamCheat.VGK!MTB severe
Trojan:Win64/HijackLoader.ARAC!MTB severe
Trojan:Win64/LuxLoader.AAA!AMTB severe
Trojan:Win64/QuasarRAT.AU!AMTB severe
Trojan:Win64/RustyStealer.VGK!MTB severe
Trojan:Win64/StealC.VD!MTB severe
Trojan:Win64/Vidar.AAA!AMTB severe
Trojan:Win64/Vidar.GN!MTB severe
TrojanDownloader:MSIL/Cerbu.SX!MTB severe
TrojanDownloader:MSIL/Zilla.CSL!MTB severe
TrojanDownloader:PowerShell/Phantom.PGA!MSR severe
TrojanDownloader:VBS/KimSuky.AAA!AMTB severe
TrojanDownloader:VBS/SLoad.AAA!AMTB severe
TrojanSpy:Win32/Lydra.AAB!AMTB severe
VirTool:MSIL/Deceresz.A severe
VirTool:MSIL/Sheloadesz.A severe
VirTool:PowerShell/Indiresz.A severe
VirTool:Win64/Geluasz.A severe
VirTool:Win64/Perasz.A severe
VirTool:Win64/Refledeiz.A severe
VulnerableDriver:Win32/ProcessMonitorDriver severe

Updated threat detections

Name Severity
Adware:JS/BrowserHijacker!AMTB high
Adware:Win32/HiRu high
Adware:Win32/OpenSUpdater high
Adware:Win32/PCAcceleratePro high
Adware:Win32/Tnega high
Backdoor:Java/Dirtelti.A severe
Backdoor:JS/MonGorShell!rfn severe
Backdoor:Linux/Mirai!rfn severe
Backdoor:MSIL/Bladabindi!rfn severe
Backdoor:MSIL/Noancooe!rfn severe
Backdoor:MSIL/Quasar!rfn severe
Backdoor:MSIL/XWormRAT!rfn severe
Backdoor:PHP/Webshell severe
Backdoor:Win32/Rifdoor!rfn severe
Backdoor:Win32/Sdbot!rfn severe
BrowserModifier:Win32/MediaArena high
BrowserModifier:Win32/Shafmia high
DDoS:Win32/Nitol!rfn severe
HackTool:MSIL/AutoKMS.I!MTB high
HackTool:MSIL/BruteForce high
HackTool:PowerShell/BloodHound high
HackTool:PowerShell/PowerSploit.E high
HackTool:PowerShell/PowerView!rfn high
HackTool:Win32/Activator!MTB high
HackTool:Win32/Agent high
HackTool:Win32/cloudflared.A high
HackTool:Win32/crack high
HackTool:Win32/Crack!AMTB high
HackTool:Win32/Crack!MTB high
HackTool:Win32/DongleHack high
HackTool:Win32/ExtremeInjector high
HackTool:Win32/FrpClient!MSR high
HackTool:Win32/Gsecdump high
HackTool:Win32/Keygen high
HackTool:Win32/Keygen!AMTB high
HackTool:Win32/Keygen.A high
HackTool:Win32/Mailpassview!rfn high
HackTool:Win32/Malgent!MSR high
HackTool:Win32/MeltScreen!MTB high
HackTool:Win32/PasswordPst high
HackTool:Win32/Patcher!MTB high
HackTool:Win32/RemoteAdmin!rfn high
HackTool:Win32/Tnega high
HackTool:Win32/Yoasimee.A high
HackTool:Win64/Passview!MSR high
HackTool:Win64/Patcher!MTB high
HackTool:Win64/RemoteAdmin!MTB high
HackTool:Win64/RemoteAdmin!rfn high
Misleading:Win32/Lodi high
PWS:MSIL/Stealer!rfn severe
PWS:Win32/Fareit!rfn severe
Ransom:BAT/DisableDefender.A!dha severe
Ransom:Linux/Babuk!rfn severe
Ransom:Linux/GunraCrypt!rfn severe
Ransom:Win32/Basta!rfn severe
Ransom:Win32/Conti!rfn severe
Ransom:Win32/ContiCrypt!rfn severe
Ransom:Win32/DragonForce!rfn severe
Ransom:Win32/Inc!rfn severe
Ransom:Win32/Lockbit!rfn severe
Ransom:Win32/PowerRanges.A severe
Ransom:Win64/Basta!rfn severe
Ransom:Win64/Cartel!rfn severe
Ransom:Win64/DarkPower!rfn severe
Ransom:Win64/GunraCrypt!rfn severe
Ransom:Win64/HiveCrypt!rfn severe
Ransom:Win64/Prince!rfn severe
Ransom:Win64/Rook!rfn severe
SoftwareBundler:Win32/InstallMonster high
SupportScam:Win32/Screcwon!AMTB severe
Trojan:AndroidOS/AVerseFalc!rfn severe
Trojan:AndroidOS/Multiverze!rfn severe
Trojan:BAT/LNK_DarkGate!rfn severe
Trojan:BAT/Qakbot!rfn severe
Trojan:BAT/Runner.B!AMTB severe
Trojan:BAT/Starter.G!lnk severe
Trojan:HTML/Acsogenixx.MK!MTB severe
Trojan:HTML/Cryxos.VD!MTB severe
Trojan:HTML/FakeLogin.STG!MSR severe
Trojan:HTML/Phish!rfn severe
Trojan:HTML/Phish.RR!MTB severe
Trojan:HTML/Qakbot!rfn severe
Trojan:HTML/Redirector!rfn severe
Trojan:HTML/Redirector.MSS!MTB severe
Trojan:HTML/Redirector.SSF!MTB severe
Trojan:HTML/Redirector.VVZ!MTB severe
Trojan:HTML/ScrInject.SMW!MTB severe
Trojan:HTML/ScrInject.VDB!MTB severe
Trojan:JS/DarkCloud.K!AMTB severe
Trojan:JS/GlassWorm!MTB severe
Trojan:JS/Miner.A!AMTB severe
Trojan:JS/Obfuse!MTB severe
Trojan:JS/Obfuse.BE!MTB severe
Trojan:JS/Obfuse.RR!MTB severe
Trojan:JS/Qakbot!rfn severe
Trojan:JS/Redirector.RVK!MTB severe
Trojan:JS/Redirector.VDN!MTB severe
Trojan:JS/XWORM.SS!MTB severe
Trojan:Linux/Multiverze!rfn severe
Trojan:Linux/Samblad.A!MTB severe
Trojan:MacOS/Multiverze!rfn severe
Trojan:MSIL/AsyncRat!rfn severe
Trojan:MSIL/CobaltStrike!MTB severe
Trojan:MSIL/CoinMiner!MSR severe
Trojan:MSIL/CoinMiner!MTB severe
Trojan:MSIL/CryptInject!MTB severe
Trojan:MSIL/Heracles!MTB severe
Trojan:MSIL/Heracles.BAQ!MTB severe
Trojan:MSIL/Jalapeno.MCT!MTB severe
Trojan:MSIL/Lazy.BAC!MTB severe
Trojan:MSIL/Malgent!MSR severe
Trojan:MSIL/Malgent!MTB severe
Trojan:MSIL/Redcap.NR!MTB severe
Trojan:MSIL/Seraph!MSR severe
Trojan:O97M/DDownloader!rfn severe
Trojan:PDF/Phish!MSR severe
Trojan:PDF/Phish!rfn severe
Trojan:PowerShell/AgentTesla!AMTB severe
Trojan:PowerShell/DonutLoader.ASTB!MTB severe
Trojan:PowerShell/Malagent!MSR severe
Trojan:PowerShell/Malgent!MSR severe
Trojan:PowerShell/Obfuse!AMTB severe
Trojan:PowerShell/VJWorm.P!MTB severe
Trojan:PowerShell/VJWorm.PA!MTB severe
Trojan:PowerShell/XWorm!AMTB severe
Trojan:PowerShell/XWorm.SAB!MSR severe
Trojan:Python/LoneNone.AF!MTB severe
Trojan:Python/LoneNone.AH!MTB severe
Trojan:Python/LoneNone.AI!MTB severe
Trojan:Python/Multiverze!rfn severe
Trojan:Python/Nuitka!MTB severe
Trojan:Script/Malgent!MSR severe
Trojan:Script/Multiverze!rfn severe
Trojan:Script/Wacatac severe
Trojan:VBS/Emotet!rfn severe
Trojan:VBS/Qakbot!rfn severe
Trojan:Win32/Acll!rfn severe
Trojan:Win32/Alevaul!rfn severe
Trojan:Win32/Androm.BAH!MTB severe
Trojan:Win32/Androm.BAS!MTB severe
Trojan:Win32/AutoInject.NRA!MTB severe
Trojan:Win32/AutoitInject.SPB!MTB severe
Trojan:Win32/Autorun!MTB severe
Trojan:Win32/Azorult!rfn severe
Trojan:Win32/Casdet!rfn severe
Trojan:Win32/Cerber!rfn severe
Trojan:Win32/Cobaltstrike!MSR severe
Trojan:Win32/CoinMiner!rfn severe
Trojan:Win32/Copak.KAV!MTB severe
Trojan:Win32/Copak.KK!MTB severe
Trojan:Win32/Coroxy!rfn severe
Trojan:Win32/CryptInject!rfn severe
Trojan:Win32/Dynamer!ac severe
Trojan:Win32/Egairtigado!rfn severe
Trojan:Win32/Etset!rfn severe
Trojan:Win32/Farfli.VD!MTB severe
Trojan:Win32/Fauppod!rfn severe
Trojan:Win32/Filecoder!rfn severe
Trojan:Win32/Flystudio!MTB severe
Trojan:Win32/Glupteba!rfn severe
Trojan:Win32/Gracing!rfn severe
Trojan:Win32/Grandoreiro!rfn severe
Trojan:Win32/GuLoader.REU!MTB severe
Trojan:Win32/Injector!rfn severe
Trojan:Win32/InjectorCrypt!rfn severe
Trojan:Win32/IRCBot!rfn severe
Trojan:Win32/Kepavll!rfn severe
Trojan:Win32/Leonem!rfn severe
Trojan:Win32/LummaStealer!MTB severe
Trojan:Win32/Malgent severe
Trojan:Win32/Malgent!MSR severe
Trojan:Win32/Malgent!MTB severe
Trojan:Win32/MereTam!rfn severe
Trojan:Win32/Mikey!MTB severe
Trojan:Win32/Nanocore!rfn severe
Trojan:Win32/Neoreblamy.NVZ!MTB severe
Trojan:Win32/NitrogenLdr!rfn severe
Trojan:Win32/NSISInject!MTB severe
Trojan:Win32/OffLoader!MTB severe
Trojan:Win32/Oyester!rfn severe
Trojan:Win32/PhishLeonem!rfn severe
Trojan:Win32/Pomal!rfn severe
Trojan:Win32/Qakbot!rfn severe
Trojan:Win32/Qbot!rfn severe
Trojan:Win32/QuasarRat!MTB severe
Trojan:Win32/Qwexlafiba!rfn severe
Trojan:Win32/Ravartar!rfn severe
Trojan:Win32/Rootkit!MSR severe
Trojan:Win32/Seheq!rfn severe
Trojan:Win32/Sehyioa.A!cl severe
Trojan:Win32/ShortSeek!rfn severe
Trojan:Win32/Supma.A severe
Trojan:Win32/Suschil!rfn severe
Trojan:Win32/SystemBC!rfn severe
Trojan:Win32/Tedy!MTB severe
Trojan:Win32/Tiggre!rfn severe
Trojan:Win32/Tnega!ml severe
Trojan:Win32/Totbrick!MTB severe
Trojan:Win32/Uphosyfs!rfn severe
Trojan:Win32/Vindor!rfn severe
Trojan:Win32/VMProtect severe
Trojan:Win32/Wacatac severe
Trojan:Win32/Wacatac.A!rfn severe
Trojan:Win32/XWorm!rfn severe
Trojan:Win32/Yomal!rfn severe
Trojan:Win32/Znyonm!rfn severe
Trojan:Win32/Zusy!rfn severe
Trojan:Win32/Zusy.BL!MTB severe
Trojan:Win32/Zusy.KK!MTB severe
Trojan:Win64/Boldbadger!rfn severe
Trojan:Win64/ClipBanker.NB!MTB severe
Trojan:Win64/ClipBanker.NP!MTB severe
Trojan:Win64/CobaltStrike!rfn severe
Trojan:Win64/CoinMiner!rfn severe
Trojan:Win64/Convagent!MTB severe
Trojan:Win64/CryptInject!rfn severe
Trojan:Win64/DllHijack!rfn severe
Trojan:Win64/Donut!MTB severe
Trojan:Win64/Emotet!rfn severe
Trojan:Win64/Emotetcrypt!rfn severe
Trojan:Win64/EmotetPacker!rfn severe
Trojan:Win64/ExamCheat.VGK!MTB severe
Trojan:Win64/HardConnect!rfn severe
Trojan:Win64/Havoc!rfn severe
Trojan:Win64/HijackLoader.ARAC!MTB severe
Trojan:Win64/IcedID!rfn severe
Trojan:Win64/Khalesi!MTB severe
Trojan:Win64/Latrodectus!rfn severe
Trojan:Win64/Lazy!MTB severe
Trojan:Win64/Lazy.SPEE!MTB severe
Trojan:Win64/Lazy.SXQ!MTB severe
Trojan:Win64/LummaStealer!rfn severe
Trojan:Win64/MalCertPutty!rfn severe
Trojan:Win64/MalDrv!MSR severe
Trojan:Win64/Malgent!MSR severe
Trojan:Win64/Malgent!MTB severe
Trojan:Win64/Maloder!rfn severe
Trojan:Win64/Meterpreter!rfn severe
Trojan:Win64/Oyster!rfn severe
Trojan:Win64/OysterLoader!rfn severe
Trojan:Win64/PortStarter!rfn severe
Trojan:Win64/RaporStealer.MX!MTB severe
Trojan:Win64/ShellcodeRunner!rfn severe
Trojan:Win64/ShellcodeRunner.NR!MTB severe
Trojan:Win64/Spyboy!rfn severe
Trojan:Win64/Stealc!MTB severe
Trojan:Win64/StealC.VD!MTB severe
Trojan:Win64/Tedy!MTB severe
Trojan:Win64/Tedy.ZJJ!MTB severe
Trojan:Win64/Vidar.NR!MTB severe
Trojan:Win64/VMProtect!MTB severe
Trojan:Win64/WinGoObfusc!rfn severe
Trojan:Win64/ZLoaderE!rfn severe
Trojan:Win64/Zusy!MTB severe
Trojan:Win64/Zusy!rfn severe
Trojan:Win64/Zusy.SXR!MTB severe
TrojanClicker:Win32/Doplik.Q severe
TrojanDownloader:BAT/Phish!rfn severe
TrojanDownloader:BAT/QakBotLoader!rfn severe
TrojanDownloader:JS/Qakbot!rfn severe
TrojanDownloader:O97M/Emotet!rfn severe
TrojanDownloader:PowerShell/Malgent!MSR severe
TrojanDownloader:PowerShell/Phantom.PGA!MSR severe
TrojanDownloader:Win32/Contaskitar!rfn severe
TrojanDownloader:Win32/VB!rfn severe
TrojanDownloader:Win64/BazaarLoader!rfn severe
TrojanDropper:PowerShell/Malgent!MSR severe
TrojanDropper:Win32/Malgent!MSR severe
TrojanDropper:Win64/CoinMiner!MSR severe
VirTool:Java/Meterpreter.A severe
VirTool:MSIL/Injector!rfn severe
VirTool:Win64/MeterSam.A severe
VirTool:WinNT/Rootkitdrv!rfn severe
Worm:VBS/Jenxcus!rfn severe
Worm:Win32/AutoRun!rfn severe
Worm:Win32/Citeary!rfn severe
Worm:Win32/Gamarue!rfn severe