Concrete signature match: Trojan - Appears legitimate but performs malicious actions for .NET (Microsoft Intermediate Language) platform, family XWorm
This is a concrete detection of Trojan:MSIL/XWorm.GAP, a sophisticated .NET-based multi-purpose malware. XWorm is known for its capabilities in remote access, information theft (credentials, financial data), and potential delivery of further malicious payloads, with this detection reinforced by machine learning behavioral analysis.
No detailed analysis available from definition files.
3dd9a087a124f08ae4a29d420a2362544c8a0f32e1a9bdfb1b2b3fac1789d753Immediately isolate the affected device and perform a full system scan to remove the threat. Change all credentials used on the compromised system and monitor for persistence mechanisms, considering a full system re-image for complete assurance.