Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Mar 12, 2022 | Updated Nov 22, 2023

TrojanDownloader:Win32/CobaltStrike

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

This threat downloads and installs other programs, including other malware, onto your PC without your consent.

TrojanDownloader:Win32/CobaltStrike is a trojan that downloads and installs the Cobalt Strike beacon.

To address TrojanDownloader:Win32/CobaltStrike infection, do the following:

  1. Disconnect the infected device from the network.
  2. Perform a thorough scan using Microsoft Defender.
  3. Conduct a comprehensive analysis of the device to detect any signs of Cobalt Strike beacon installation.

 

Microsoft Defender Antivirus automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.

You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

Devices infected by this trojan might be severely compromised and require complete restoration. Consider restoring your device. When restoring data, ensure that it is a clean, uninfected copy.

Follow us