Riskware/Agent

description-logoAnalysis


Riskware/Agent is a very generic detection for a set of executables that harbors high risk behaviors.
These are mostly composed of Installers, BHO's, Stand Alone applications, or Utilities itself that could be used to deliver unwanted components into an unsuspecting users.
Some of these applications are big files above 100MB and some are delivered in foreign languages.
Below are some of the sample effects:


    • Figure 1: BHO Installation.


    • Figure 2: Remote utility.


    • Figure 3: Another BHO.


    • Figure 4: Downloader Installation.


recommended-action-logoRecommended Action

  • Make sure that your FortiGate/FortiClient system is using the latest AV database.
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.

Telemetry logoTelemetry

Detection Availability

FortiGate
FortiClient
FortiAPS
FortiAPU
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR

Version Updates

Date Version Detail
2023-09-19 91.07104
2023-03-24 91.01712
2022-11-23 90.08097
2022-05-28 90.02712
2020-05-20 77.56100
2020-05-13 77.39500
2020-05-06 77.22700
2020-04-22 76.89100
2019-08-07 70.54800
2019-05-22 68.69700