We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Trojan:VBS/AsyncRAT
Aliases: No associated aliases
Summary
Trojan:VBS/AsyncRAT is a Visual Basic Script (VBS)-based trojan used to deliver AsyncRAT onto targeted devices. AsyncRAT is a remote access trojan (RAT) that is similar to RevengeRAT (also known as Revenge). RevengeRAT is a malware known to infect devices through malicious email attachments or malicious ads on compromised websites. Attackers use spear-phishing to deliver the malware as a Visual Basic (VB) script, contained in either .zip or .rar archives, or in .doc files. They also use emails or images embedded with links that redirect users to cloud-hosting sites, such as GoogleDrive, OneDrive, iCloud drive, which host the malware.
Read the following blogs for details:
Microsoft Defender Antivirus automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.
You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.