W32/Injector.fam!tr

description-logoAnalysis


  • This is a generic detection for a type of trojan injector. This trojan creates a new instance of itself and injects codes into it.

  • It may have anti-virtual-machine or anti-emulator functionalities.

  • It may attempt to stop some security-related services, such as the following:
    • SharedAccess
    • Security Center


recommended-action-logoRecommended Action

    FortiGate Systems
  • Check the main screen using the web interface for your FortiGate unit to ensure that the latest AV/NIDS database has been downloaded and installed on your system - if required, enable the "Allow Push Update" option.
    FortiClient Systems
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.

Telemetry logoTelemetry

Detection Availability

FortiGate
FortiClient
FortiAPS
FortiAPU
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR

Version Updates

Date Version Detail
2022-08-30 90.05531
2022-08-02 90.04712
2022-05-25 90.02622
2020-01-02 74.24900 Sig Updated
2019-10-23 72.54100 Sig Updated
2019-05-03 68.25100 Sig Updated
2019-05-03 68.24700 Sig Updated
2019-04-03 67.53400 Sig Updated
2019-04-03 67.52800 Sig Updated
2018-11-24 64.42300 Sig Updated