Concrete signature match: Trojan - Appears legitimate but performs malicious actions for .NET (Microsoft Intermediate Language) platform, family Zilla
This threat is a Trojan from the Zilla malware family, identified by its suspicious behavior through machine learning analysis (!MTB). This malware family is typically associated with information-stealing, attempting to exfiltrate sensitive data like user credentials and system information. The detection is considered high-confidence despite being behavioral.
No specific strings found for this threat
f5253bc6fd4e5428fc42c6827a3b2906ca00f14d50a4ee0f35449c341a1982bb1. Isolate the affected host from the network immediately. 2. Use Windows Defender to remove the threat or restore the machine from a known-good backup. 3. Reset all user credentials and secrets that were stored on or accessed from the compromised system.