W32/VB.F!tr

description-logoAnalysis

W32/VB.F!tr - 06-04-04


General Info:

This threat is a "PE" executable file, with file size 86016

Files:

  • Copies itself to: undefinedSystemRootundefined/undefinedWinDirundefined

Installation to System:

  • When run, it copies itself to:
    undefinedSystem Folderundefined
  • And creates these registry entries:
    HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run Patcher = "undefinedSystem Folderundefined\scvhost.exe"

Telemetry logoTelemetry

Detection Availability

FortiGate
Extended
FortiClient
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR

Version Updates

Date Version Detail
2024-03-25 92.02774
2022-05-31 90.02802
2022-05-25 90.02622
2022-03-15 90.00492
2021-11-09 89.06714
2021-06-01 86.00601
2021-05-25 86.00433
2021-04-27 85.00761
2021-04-20 85.00593
2021-04-13 85.00424