We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
TrojanDownloader:Win32/CryptedLoader.Z
Aliases: No associated aliases
Summary
This is a detection of a malicious installer using the Universal Windows Platform (UWP) with stolen or compromised digital signature. Threat actors like the financially motivated Storm-0569 use search engine optimization (SEO) to deceive users into downloading and installing this trojan.
For information about CryptedLoader and other human-operated malware campaigns, read this blog post:
Users should take the following steps to mitigate the threat:
- Remove the infected device from the network.
- Thoroughly investigate for signs of other compromised devices.
You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.