Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Dec 14, 2023 | Updated Mar 12, 2024

Backdoor:PowerShell/CryptedLoader.PS

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

Backdoor:PowerShell/CryptedLoader.PS is a detection of PowerShell script that collects sensitive information from a system, communicates back to a command-and-control (C2) server, and downloads additional file to launch.

For information about CryptedLoader and other human-operated malware campaigns, read this blog post: 

Microsoft Defender Antivirus automatically removes threats as they are detected. However, many infections can leave remnant files and system changes. Updating your antimalware definitions and running a full scan might help address these remnant artifacts.

You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

Follow us