Skip to main content
Skip to main content
Microsoft Security Intelligence

Change logs for security intelligence update version 1.429.19.0

This page lists newly added and updated threat detections included in security intelligence updates for Microsoft Defender Antivirus and other Microsoft antimalware. If you don’t find the latest security intelligence update version in the selector below, please refresh this page or let us know us know through the feedback smiley.

Looking for the latest update? Download the latest update

Released on

5/15/2025 8:08:16 PM

Added threat detections

Name Severity
Adware:Win32/Adsunwan high
Backdoor:MSIL/Remcos.AROA!MTB severe
Behavior:Win32/Mamadut.FB severe
HackTool:Linux/MedusaBrute!MTB high
HackTool:Win32/HackAV!AMTB high
Phish:HTML/FakeLogin.PCO!MTB severe
Phish:HTML/FakeLogin.PCP!MTB severe
Phish:HTML/FakeLogin.SEL!MTB severe
Phish:HTML/Redirector.PCX!MTB severe
SettingsModifier:Win32/HostsFileHijack!rfn severe
Trojan:HTML/Redirector.LLP!MTB severe
Trojan:JS/Phish.MBN!MTB severe
Trojan:JS/ScrInject.GPXO!MTB severe
Trojan:MSIL/AgentTesla.RAL!MTB severe
Trojan:MSIL/AsyncRat.ASB!MTB severe
Trojan:MSIL/CrimsonRat.AMS!MTB severe
Trojan:MSIL/CryptInject.JYAA!MTB severe
Trojan:MSIL/Dcstl.ASKA!MTB severe
Trojan:MSIL/MassLogger.SKL!MTB severe
Trojan:MSIL/SnakeLogger.CE!MTB severe
Trojan:MSIL/Stealerc.GPAL!MTB severe
Trojan:PowerShell/Asyncrat.KA!MTB severe
Trojan:PowerShell/Boxter.NFG!MTB severe
Trojan:PowerShell/Boxter.NFH!MTB severe
Trojan:PowerShell/Clickfix.YBB!ams severe
Trojan:PowerShell/CryptoStealer.CAZ!MTB severe
Trojan:PowerShell/Powdow.SO!MTB severe
Trojan:VBS/AgentTesla.LLN!MTB severe
Trojan:VBS/AgentTesla.LLO!MTB severe
Trojan:VBS/Crysan.BA!MTB severe
Trojan:VBS/Remcos.LLQ!MTB severe
Trojan:Win32/ClickFix.YAP!MTB severe
Trojan:Win32/ClickFix.YAS!MTB severe
Trojan:Win32/GuLoader.GMT!MTB severe
Trojan:Win32/GuLoader.IGI!MTB severe
Trojan:Win32/GuLoader.KBB!MTB severe
Trojan:Win32/Kkrunchy.GVA!MTB severe
Trojan:Win32/LummaC.GZM!MTB severe
Trojan:Win32/ModiLoader.LB!MTB severe
Trojan:Win32/SuspClickFix.A severe
Trojan:Win32/SuspClickFix.B severe
Trojan:Win32/SuspClickFix.C severe
Trojan:Win32/SuspClickFix.D severe
Trojan:Win32/WinLNK.CAZ!MTB severe
Trojan:Win32/WinLNK.LLR!MTB severe
Trojan:Win32/WinLNK.ME!MTB severe
Trojan:Win32/WinLNK.VDN!MTB severe
Trojan:Win64/CobaltStrike.GLA!MTB severe
Trojan:Win64/Etset.GVA!MTB severe
Trojan:Win64/FrostyGoop.AFR!MTB severe
Trojan:Win64/InterLock.GVA!MTB severe
Trojan:Win64/PoolInject.GVA!MTB severe
Trojan:Win64/Stealer.GVA!MTB severe
TrojanDownloader:PowerShell/Boxter.DTJ!MTB severe
TrojanDownloader:PowerShell/FakeCaptcha.TKY!MTB severe

Updated threat detections

Name Severity
Adware:AndroidOS/Multiverze high
Adware:Win32/Tnega high
Backdoor:ASP/Upharambegorshl.A severe
Backdoor:MSIL/Bladabindi!rfn severe
Backdoor:Win32/Berbew severe
Backdoor:Win32/Berbew!rfn severe
Backdoor:Win32/Farfli.BAA!MTB severe
Backdoor:Win32/Hupigon severe
Backdoor:Win32/Padodor!rfn severe
Backdoor:Win32/Remcos!rfn severe
Behavior:Win32/DisableBehaviorMonitoring.C severe
Behavior:Win32/Eruliafnogol.C severe
Behavior:Win32/Eruliafnogol.D severe
Behavior:Win32/LogonSuccess.B severe
Behavior:Win32/LogonSuccess.C severe
HackTool:BAT/AutoKMS!rfn high
HackTool:Win32/AndroidUnlocker!MTB high
HackTool:Win32/AutoKMS high
HackTool:Win32/Crack!MTB high
HackTool:Win32/Crack!rfn high
HackTool:Win32/DefenderControl!rfn high
HackTool:Win32/Gendows!pz high
HackTool:Win32/Keygen high
HackTool:Win32/Keygen!rfn high
HackTool:Win32/KMSActivator!rfn high
Phish:HTML/FakeLogin.AE!MTB severe
Program:AndroidOS/Multiverze high
PWS:Win32/Msnpass.B.dll severe
PWS:Win32/Zbot!rfn severe
Ransom:MSIL/BearCrypt.SM!MTB severe
Ransom:Win32/Royal!MTB severe
Ransom:Win32/Royal!rfn severe
RemoteAccess:Win32/RMSRemoteutilities!MTB low
SoftwareBundler:Win32/Mizenota high
Spyware:AndroidOS/Multiverze!rfn high
SupportScam:Win32/Screcwon!AMTB severe
Tool:AndroidOS/Multiverze!rfn moderate
Trojan:ALisp/Duxfas.C severe
Trojan:AndroidOS/AVerseFalc!rfn severe
Trojan:AndroidOS/Mamont.H!MTB severe
Trojan:BAT/AsyncRAT.KC!MTB severe
Trojan:HTML/Phish.MX!MTB severe
Trojan:HTML/SpamLeonem!rfn severe
Trojan:Linux/Mirai!MTB severe
Trojan:Linux/Multiverze!rfn severe
Trojan:MSIL/AgentTesla!rfn severe
Trojan:MSIL/AgentTesla.RAK!MTB severe
Trojan:MSIL/Androm!rfn severe
Trojan:MSIL/AsyncRAT!rfn severe
Trojan:MSIL/Crysan!rfn severe
Trojan:MSIL/DarkTortilla.BTT!MTB severe
Trojan:MSIL/DCRat!rfn severe
Trojan:MSIL/Formbook.RA!MTB severe
Trojan:MSIL/Heracles!rfn severe
Trojan:MSIL/Mardom!rfn severe
Trojan:MSIL/Njrat!rfn severe
Trojan:MSIL/PureLogStealer!rfn severe
Trojan:MSIL/Remcos!rfn severe
Trojan:MSIL/Snakekeylogger!rfn severe
Trojan:MSIL/Stealer!rfn severe
Trojan:MSIL/Taskun!rfn severe
Trojan:MSIL/WhiteSnake!rfn severe
Trojan:MSIL/XWormRAT!rfn severe
Trojan:MSIL/Zilla!rfn severe
Trojan:Python/Multiverze!rfn severe
Trojan:VBS/GuLoader!rfn severe
Trojan:VBS/Remcos!rfn severe
Trojan:Win32/Amadey!rfn severe
Trojan:Win32/Amadey.ADY!MTB severe
Trojan:Win32/AutoitInject!rfn severe
Trojan:Win32/Autorun!rfn severe
Trojan:Win32/Cerber!rfn severe
Trojan:Win32/CobaltStrike!rfn severe
Trojan:Win32/CoreWarrior!rfn severe
Trojan:Win32/CryptInject!rfn severe
Trojan:Win32/DCRat!rfn severe
Trojan:Win32/Delf!MTB severe
Trojan:Win32/DelfInject!rfn severe
Trojan:Win32/DllInject!MTB severe
Trojan:Win32/Downloader!rfn severe
Trojan:Win32/DSSDetection severe
Trojan:Win32/Dynamer!rfn severe
Trojan:Win32/Egairtigado!rfn severe
Trojan:Win32/Emotet.BF severe
Trojan:Win32/Etset!rfn severe
Trojan:Win32/Fareit!rfn severe
Trojan:Win32/Flystudio!MTB severe
Trojan:Win32/GCleaner!rfn severe
Trojan:Win32/gen8!rfn severe
Trojan:Win32/Grandoreiro!rfn severe
Trojan:Win32/GuLoader!rfn severe
Trojan:Win32/Hitbrovi!rfn severe
Trojan:Win32/ICLoader!rfn severe
Trojan:Win32/Injector!AMTB severe
Trojan:Win32/Injector!rfn severe
Trojan:Win32/InjectorCrypt!rfn severe
Trojan:Win32/Kepavll!rfn severe
Trojan:Win32/Killav!pz severe
Trojan:Win32/Leonem!rfn severe
Trojan:Win32/Lummac!rfn severe
Trojan:Win32/LummaStealer!MTB severe
Trojan:Win32/LummaStealer!rfn severe
Trojan:Win32/LummaStealer.RH!MTB severe
Trojan:Win32/Malgent!MSR severe
Trojan:Win32/Malgent!rfn severe
Trojan:Win32/Meterpreter!rfn severe
Trojan:Win32/Nanocore!rfn severe
Trojan:Win32/NativeZone!mclg severe
Trojan:Win32/Neoreblamy!MTB severe
Trojan:Win32/Neoreblamy!rfn severe
Trojan:Win32/Neoreblamy.NFT!MTB severe
Trojan:Win32/Orsam!rfn severe
Trojan:Win32/Orsam!rts high
Trojan:Win32/Ousaban!rfn severe
Trojan:Win32/Phish!MSR severe
Trojan:Win32/PlugX!rfn severe
Trojan:Win32/Pomal!rfn severe
Trojan:Win32/Qukart!rfn severe
Trojan:Win32/Salgorea!rfn severe
Trojan:Win32/Snojan!rfn severe
Trojan:Win32/Startpage severe
Trojan:Win32/Staser!MTB severe
Trojan:Win32/StealC!rfn severe
Trojan:Win32/Suschil!rfn severe
Trojan:Win32/Swisyn!rfn severe
Trojan:Win32/Tepfer!rfn severe
Trojan:Win32/Tiggre!rfn severe
Trojan:Win32/Tnega!MSR severe
Trojan:Win32/Tofsee!rfn severe
Trojan:Win32/Urelas!rfn severe
Trojan:Win32/VBClone!rfn severe
Trojan:Win32/Vidar!rfn severe
Trojan:Win32/Vilsel!rfn severe
Trojan:Win32/Vindor!rfn severe
Trojan:Win32/Yomal!rfn severe
Trojan:Win32/Zbot!rfn severe
Trojan:Win32/Znyonm!rfn severe
Trojan:Win32/Zombie!rfn severe
Trojan:Win64/Bumblebee!rfn severe
Trojan:Win64/CobaltStrike.RA!MTB severe
Trojan:Win64/CryptInject!rfn severe
Trojan:Win64/DriverLoader!rfn severe
Trojan:Win64/Havoc.AMBB!MTB severe
Trojan:Win64/Latrodectus.PH!MTB severe
Trojan:Win64/LummaC!rfn severe
Trojan:Win64/LummaStealer!rfn severe
Trojan:Win64/Malgent!MSR severe
Trojan:Win64/Tnega!MSR severe
Trojan:Win64/Zusy!MTB severe
TrojanDownloader:O97M/Donoff severe
TrojanDownloader:Win32/Berbew severe
TrojanDownloader:Win32/Berbew!rfn severe
TrojanDownloader:Win32/Nemucod severe
TrojanDownloader:Win32/Nemucod!rfn severe
TrojanDownloader:Win32/Unruy!rfn severe
TrojanDownloader:Win32/Zbot!rfn severe
TrojanDropper:Win32/Dinwod!rfn severe
TrojanDropper:Win32/Systex!rfn severe
TrojanSpy:AndroidOS/Nyleaker.B severe
TrojanSpy:Win32/Banker severe
Worm:Win32/Autorun!rfn severe
Worm:Win32/AutoRun.XXY!bit severe
Worm:Win32/Bruhorn!rfn severe
Worm:Win32/Ganelp!rfn severe
Worm:Win32/Mofksys!rfn severe