Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 32-bit Windows platform, family SalatStealer
Trojan:Win32/SalatStealer!MTB is a Windows Trojan that drops a malicious loader and exfiltrates sensitive data, operating under the SalatStealer family with low false positive risk. It is a known, low‑confidence concrete detection targeting Win32 executables.
No detailed analysis available from definition files.
7357c0e5e671c1b58e30f35fbff27db438b858db65c4a7deb1f6dead2f7080785d346dd20bb2bcca16508edb45efbfe5776cd22672eedd15e67498c2a857ae01dec6935a711a10cf0cf9c7de77bc42ae1e0379fd4e863089e9624a4357da362fIsolate the affected host, update Windows Defender definitions, run a full offline scan to quarantine Loader.exe, block related network IOCs at the firewall, and remove any persisted persistence mechanisms.