Search
Keyword: win.trojan.farfrom-1
300 Total Search |
Showing Results : 1 - 20
This file infector arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites.
Windows
Heuristic Detection This is the Trend Micro heuristic detection for suspicious files that manifest similar behavior and characteristics as the following malware: MTE If your Trend Micro product detects a file under this detection na...
This file infector arrives via removable drives. It arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It infects by appending its code to target host files. It propagat...
This file infector arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It disables Task Manager, Registry Editor, and Folder Options.
This file infector infects by appending its code to target host files.
Windows
Heuristic Detection This is the Trend Micro heuristic detection for suspicious files that manifest similar behavior and characteristics as the following malware: CROWTI DROPPER INJECT/INJECTOR KRYPTIK RANSOM SPYEYES YAKES ZBOT If ...
This file infector arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It infects files by overwriting code in the entry point and saving the overwritten code in the viru...
This file infector hooks certain APIs so that when these APIs are called, the virus code is executed which then infects files. It does not infect files with certain characteristics. It returns execution to the host file's original code after executio...
This is a Trend Micro heuristic detection for suspicious files that manifest behavior and characteristics similar to a tool-generated DOS polymorphic virus.
Windows
NOTES: This is a Trend Micro heuristic detection for files that contain suspicious macro scripts.
Step 1 For Trend Micro Customers Scanning your system with your registered Trend Micro security solution removes this malware....
Windows
Heuristic Detection This is the Trend Micro heuristic detection for suspicious files that manifest similar behavior and characteristics as the following malware: TSPY_ONLINEG TSPY_LEGMIR TSPY_MAGANIA WORM_ONLINEG TSPY_LINEAGE WOR...
Windows
NOTES: Heuristic Detection This is the Trend Micro heuristic detection for suspicious Visual Basic Script that may download and execute malicious files. If your Trend Micro product detects a file under this detection name...
This Trojan arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It requires its main component to successfully perform its intended routine.
This is Trend Micro detection for packets passing through various network protocols that manifests unusual behavior which can be a potential intrusion. Below are some indicators of unusual behavior: Suspicious activity in administrator or privileged ...
* indicates a new version of an existing rule Deep Packet Inspection Rules: DCERPC Services 1006906* - Identified Usage Of PsExec Command Line Tool DNS Server 1004747* - DNS Invalid Compression Denial Of Service FTP Server Com...
* indicates a new version of an existing rule Deep Packet Inspection Rules: Web Client Internet Explorer/Edge 1009640 - Microsoft Edge And Internet Explorer Same Origin Policy Bypass Vulnerabilities Integrity Monitoring Rules: ...
* indicates a new version of an existing rule Deep Packet Inspection Rules: HP OpenView Network Node Manager Web 1004573* - HP OpenView Network Node Manager Multiple Remote Code Execution Vulnerabilities (CVE-2011-0270) Microsoft...
* indicates a new version of an existing rule Deep Packet Inspection Rules: DCERPC Services 1009801* - Microsoft Windows NTLM Elevation Of Privilege Vulnerability (CVE-2019-1040) 1001839* - Restrict Attempt To Enumerate Windo...
* indicates a new version of an existing rule Deep Packet Inspection Rules: DCERPC Services 1010164* - Identified Possible Ransomware File Extension Create Activity Over Network Share Docker Daemon 1010326* - Identified Doc...
* indicates a new version of an existing rule Deep Packet Inspection Rules: DCERPC Services - Client 1010585 - Identified Possible Ransomware File Extension Create Activity Over Network Share - Client Directory Server LDAP 1...
