Skip to main content
Skip to main content
Microsoft Security Intelligence
12 entries found.
Updated on Jul 24, 2019

This threat provides attackers backdoor access to infected machines. To stay persistent and evade detection, this threat attempts to turn off Microsoft Defender Antivirus and adds itself as an authorized application to the Windows Defender Firewall.

This threat can spread through removable drives and network shares.

Alert level: severe
Updated on Mar 12, 2019
Alert level: severe
Updated on Feb 19, 2019
Alert level: severe
Updated on Mar 12, 2019
Alert level: severe
Updated on Mar 19, 2019
Alert level: severe
Updated on Mar 12, 2019
Alert level: severe
Updated on Mar 12, 2019
Alert level: severe
Updated on Mar 12, 2019
Alert level: severe
Updated on Mar 12, 2019
Alert level: severe
Updated on Aug 19, 2019
Alert level: severe
Updated on Oct 24, 2019
Alert level: severe
Updated on Sep 15, 2023
Alert level: severe