Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 64-bit Windows platform, family Injuke
This is a confirmed Trojan, specifically identified as the RustyStealer infostealer, detected via machine learning behavioral analysis and concrete signatures. It is actively distributed via web downloads, potentially dropped by the Amadey botnet, and aims to steal sensitive user information from infected Windows systems.
No detailed analysis available from definition files.
ab53b592fbaf9ca246003ba95a0234cfb5539d5790776174dfbca6c0a3f73037Immediately isolate the affected system, perform a comprehensive antimalware scan to remove the threat, and block the associated download URL (e.g., http://130.12.180.43) at network perimeters. As RustyStealer is an infostealer, assume credential compromise; reset all relevant passwords and monitor for data exfiltration.