Concrete signature match: Trojan - Appears legitimate but performs malicious actions for 64-bit Windows platform, family Xworm
This is a concrete detection of a Win64 variant of the Xworm Trojan family. Xworm is a well-known Remote Access Trojan (RAT) designed to grant attackers unauthorized control over an infected system, enabling data exfiltration, surveillance, and further malicious activities. The detection, utilizing machine learning behavioral analysis, has a low false positive risk, indicating a high confidence in its legitimacy.
No specific strings found for this threat
ee14d4bac5dfda479a81d91b682ecc42794163b233685741e0be0df5fe29e57dImmediately isolate the infected host from the network to prevent further compromise. Perform a full system scan with updated antivirus definitions to quarantine or remove the detected threat. Review system logs for signs of post-infection activity, change all user credentials, and consider restoring from a known good backup if the system integrity is compromised.