Keyword: ms
300 Total Search   |   Showing Results : 281 - 300
Windows Dropping Routine This Trojan drops the following files: %Application Data%\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms (Note: %Application Data% is the Application Data folder, where it usu...
This backdoor modifies the Internet Explorer Zone Settings. It deletes itself after execution.
This backdoor arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It executes then deletes itself afterward.
This backdoor arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It deletes itself after execution.
This backdoor arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It deletes itself after execution.
This backdoor arrives as an attachment to email messages spammed by other malware/grayware or malicious users. It arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It e...
This Backdoor modifies the Internet Explorer Zone Settings. As of this writing, the said sites are inaccessible. However, as of this writing, the said sites are inaccessible.
This backdoor arrives as an attachment to email messages spammed by other malware/grayware or malicious users. It modifies the Internet Explorer Zone Settings. It deletes itself after execution.
This Ransomware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
This Ransomware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It modifies the Internet Explorer Zone Settings. It deletes the initially executed copy of itself.
Sometimes, a colleague sends you a file to print for him or her, especially if he or she can't properly connect to the office printer. This spammed message plays upon that possibility. It...
* indicates a new version of an existing rule Deep Packet Inspection Rules: Directory Client LDAP TCP 1012276 - Microsoft Windows LDAP Integer Overflow Vulnerability (CVE-2024-49112) Microsoft Configuration Manager 1012289 ...
This Coinminer arrives as an attachment to email messages spammed by other malware/grayware or malicious users. It exploits software vulnerabilities to propagate to other computers across a network. It executes the downloaded files. As a result, mal...
This Trojan Spy arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It gathers certain information on the affected computer. However, as of this writing, the said sites a...
This Ransomware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It drops files as ransom note. It avoids encrypting files with the following file extensions.
This backdoor arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It deletes the initially executed copy of itself.
This Ransomware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It connects to a website to send and receive information. It avoids encrypting files with the followin...
This Ransomware connects to certain websites to send and receive information.
* indicates a new version of an existing rule Deep Packet Inspection Rules: DCERPC Services - Client 1009717 - Microsoft Windows PowerShell ISE Filename Parsing Remote Code Execution Vulnerability Over SMB Hot Rod Client 1009119 ...