user@threatcheck.sh ~ threat-analysis
bash
$ analyze-threat Trojan:Win32/OffLoader.ZII!MTB
Trojan:Win32/OffLoader.ZII!MTB - Windows Defender threat signature analysis

Trojan:Win32/OffLoader.ZII!MTB - Windows Defender Threat Analysis

$ cat analysis.txt
=== THREAT ANALYSIS REPORT ===
Threat Name: Trojan:Win32/OffLoader.ZII!MTB
Classification:
Type:Trojan
Platform:Win32
Family:OffLoader
Detection Type:Concrete
Known malware family with identified signatures
Variant:ZII
Specific signature variant within the malware family
Suffix:!MTB
Detected via machine learning and behavioral analysis
Detection Method:Behavioral
Confidence:Very High
False-Positive Risk:Low

Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 32-bit Windows platform, family OffLoader

Summary:

Trojan:Win32/OffLoader.ZII!MTB is a concrete detection of a malicious program belonging to the OffLoader family, identified through machine learning behavioral analysis. This Trojan is designed to compromise system integrity, potentially loading additional malware, facilitating unauthorized access, or exfiltrating sensitive data.

Severity:
High
VDM Static Detection:
No detailed analysis available from definition files.
Known malware which is associated with this threat:
Filename: Internet Download Manager (IDM) v9.43 Build 25 + Patch (Lifetime Activation).exe
5fffec1f48089b4a8d4110f27b7bdcddf2b72d9e66acbdfe97b10ae47b2c7006
23/12/2025
Remediation Steps:
Immediately isolate the infected system to prevent further spread. Perform a full system scan with updated antivirus definitions to remove the detected threat and any associated components. Ensure all operating system and software patches are applied, and consider resetting any potentially compromised credentials.
=== END REPORT ===
$ reanalyze-threat
This analysis was last updated on 23/12/2025. Do you want to analyze it again?
$ ls available-commands/
user@threatcheck.sh:~$