Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 32-bit Windows platform, family SalatStealer
This threat is a variant of the SalatStealer trojan, an information-stealing malware detected by machine learning behavioral analysis. It is designed to steal sensitive data from the infected system, including web browser credentials, cookies, cryptocurrency wallets, and logged keystrokes, which are then exfiltrated to a remote attacker.
No detailed analysis available from definition files.
a007f4395f36248b7409aabcde61dd57d2879eaecbcd2c50af56dc83137ee55ff1af5bb6cf466dd3ef45ba08ef9cc3f9fa381a6511afb75757983530a8470541b739f36717f37deb02a8ee322d4d801180f041674ade24a5e29b3e5fe7339e4a52d126131d67d78459101922fbbd7ed42b80e8d6157a4c193f412e7f989a03b1d0548666ce36e2c0a35ad6f3e8ebd78d6494e30becb1e1e12b5886a9b967784fIsolate the affected machine from the network. Use Windows Defender to perform a full scan and remove the threat. After removal, immediately change passwords for all critical online accounts (email, banking, social media) accessed from the device as they are likely compromised.