Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Dec 12, 2023 | Updated Mar 12, 2024

TrojanDownloader:Win32/CryptedLoader.Z

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

This is a detection of a malicious installer using the Universal Windows Platform (UWP) with stolen or compromised digital signature. Threat actors like the financially motivated Storm-0569 use search engine optimization (SEO) to deceive users into downloading and installing this trojan.

For information about CryptedLoader and other human-operated malware campaigns, read this blog post: 

Users should take the following steps to mitigate the threat:

  • Remove the infected device from the network.
  • Thoroughly investigate for signs of other compromised devices.

You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

Follow us