Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Feb 17, 2023 | Updated Aug 23, 2023

TrojanDownloader:MSIL/Rhadamanthys.A!MTB

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

This is a detection for a .NET malware that connects to a malicious URL, performs stealer activities, and tries to collect data from infected machines.

Read the following blogs for details on human-operated malware campaigns:

Microsoft Defender Antivirus automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.

Users can take the following steps to mitigate the threat:

  • Keep your operating system and antivirus products up to date.
  • Search for any suspicious or malicious application installed and remove anything that looks to be a possible threat.
  • Look into the compromised accounts for any malware content or activity.

You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

Follow us