Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 32-bit Windows platform, family FormBook
This is a concrete detection for FormBook, a well-known and potent information-stealing trojan. It is designed to harvest sensitive data, including credentials from web browsers and email clients, log keystrokes, and can download and execute additional malware.
No detailed analysis available from definition files.
c595b7aec31fcb722a76add442dd9924e651cff0ecead49c802103fe14e8ae57Immediately isolate the infected machine from the network to prevent further data exfiltration or lateral movement. Run a full antivirus scan to remove the threat. Reset all user passwords stored on or accessed from the machine and consider reimaging the device to ensure complete removal.