Skip to main content
Published May 21, 2024 | Updated Jul 14, 2024

TrojanDropper:Win64/YouieLoad.A!dha

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

Since February 2024, the Moonstone Sleet threat actor group has distributed the TrojanDropper:Win64/YouieLoad malware via a malicious tank game called DeTankWar.


This game, which requires player registration, targets sectors such as gaming, education, and software development through social media, phishing emails, and spoofed websites.

To mitigate the issue, follow these steps:

  • Apply security updates promptly, especially for the specified vulnerabilities, on all applications and operating systems. Consult the Microsoft Security Update Guide for comprehensive information on available Microsoft Security updates.
  • Follow the principle of least privilege and maintain credential hygiene. Avoid using domain-wide, admin-level service accounts. Restrict local administrative privileges to mitigate the potential installation of remote access trojans (RATs) and other undesirable applications.
  • Network segmentation is useful in constraining the propagation of malware infections. The process involves partitioning a network into smaller segments, effectively confining an infection to a single segment rather than permitting its unrestricted spread across the entire network.
  • Promote the use of Microsoft Edge and other web browsers that support SmartScreen, a feature identifying and blocking malicious websites, including phishing sites, scam sites, and those hosting exploits or malware.
  • Block the launch of downloaded executable content by disabling JavaScript or VBScript.
Follow us