Concrete signature match: Trojan - Appears legitimate but performs malicious actions for .NET (Microsoft Intermediate Language) platform, family NegaStealer
Trojan:MSIL/NegaStealer.AULB!MTB is a .NET-based information-stealing trojan from the NegaStealer family. It is designed to steal sensitive data such as browser credentials, cookies, and cryptocurrency wallet information from the compromised system. The '!MTB' suffix indicates it was identified through machine learning-based behavioral analysis.
No detailed analysis available from definition files.
e07e7df88008f8d1ba3b459a3e8907c78c7a22cadfcb2ab439ffda155d3e2fc0Isolate the affected machine from the network to prevent further data exfiltration. Use Windows Defender to perform a full system scan and remove the threat. Reset all user passwords, especially for online accounts, as credentials may have been compromised.