We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Trojan:Win64/Gozi.RE!MTB
Aliases: No associated aliases
Summary
This trojan is a detection of a DLL loader that establishes connection for command and control (C2) and loads the main banking trojan, Gozi.
For information about Gozi and other human-operated malware campaigns, read these blog posts:
Microsoft Defender Antivirus automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.
You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.