Concrete signature match: Trojan - Appears legitimate but performs malicious actions for .NET (Microsoft Intermediate Language) platform, family Formbook
This threat is the Formbook infostealer trojan, a malware designed to steal sensitive data like login credentials from web browsers and other applications. The detection was triggered by machine learning analysis observing malicious behaviors, such as self-deletion and process hollowing, which are consistent with this threat.
No detailed analysis available from definition files.
7a020ca579b3ef573ceaaf0ab51c6c38e27f15dde073053e2772b0656de370f3Immediately isolate the affected endpoint from the network. Use antivirus to remove the threat; if persistence is suspected, re-image the machine. Reset all user passwords for accounts accessed from this device, especially for web browsers and email clients.