Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 64-bit Windows platform, family Filecoder
This is a concrete detection of a Win64 ransomware variant (Filecoder.RVA) that encrypts user files and demands a ransom. The detection's low false positive risk and backing by machine learning behavioral analysis indicate a highly confident and severe threat.
No detailed analysis available from definition files.
4998897200cbbff6df24a401733d1839cc461ec8b5455f3a860ce4df3ba6e4feImmediately isolate the infected host from the network. Perform a full system scan with up-to-date antivirus and remove detected threats. If files are encrypted, restore from a clean backup, and investigate the initial compromise vector.