Concrete signature match: Trojan - Appears legitimate but performs malicious actions for PowerShell platform, family GuLoader
This threat is a malicious PowerShell script identified as the GuLoader trojan, a well-known malware downloader. Its primary function is to establish a foothold on the system and then download and execute more dangerous secondary payloads, such as remote access trojans (RATs) or infostealers.
No specific strings found for this threat
a8a5995f30fddbd3ad4d2f1538e724c508a9995245e6a753fe4da82b803b6b0eIsolate the affected host from the network immediately. Run a full antivirus scan to remove all related components. Investigate the root cause, such as a phishing email, and block the source. Assume further compromise and check for persistence and unusual network traffic.