Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 32-bit Windows platform, family GuLoader
GuLoader is a sophisticated malware downloader used to deliver secondary payloads onto an infected system. It specializes in evasion techniques to download and execute more dangerous threats like information stealers or Remote Access Trojans (RATs). This detection was triggered by machine learning behavioral analysis, indicating a process exhibited actions characteristic of GuLoader.
No detailed analysis available from definition files.
c03dd164ea566677db53f7393cc4d86490a7b87df828cb48345329a63b7138e0Isolate the machine from the network immediately. Use antivirus to remove the threat and run a full system scan. Investigate for secondary payloads and consider re-imaging the device, as the primary threat may have downloaded other malware.