W32/CVE_2017_0147.A!tr

description-logoAnalysis


W32/CVE_2017_0147.A!tr is a generic detection for a type of trojan. Since this is a generic detection, malware that are detected as W32/CVE_2017_0147.A!tr may have varying behavior. At the time of this analysis, this has been detecting variants of the WannaCry ransomware. For more information, please see the description for W32/WannaCryptor!tr.

recommended-action-logoRecommended Action

  • Make sure that your FortiGate/FortiClient system is using the latest AV database./li>
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.
  • Download and install the patch for the Microsoft Windows SMB Server Vulnerability at https://technet.microsoft.com/library/security/MS17-010.

Telemetry logoTelemetry

Detection Availability

FortiGate
FortiClient
FortiAPS
FortiAPU
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR

Version Updates

Date Version Detail
2024-03-18 92.02564
2024-02-02 92.01213
2023-10-03 91.07527
2023-09-07 91.06746
2023-07-25 91.05424
2023-07-04 91.04797
2023-06-27 91.04592
2023-06-27 91.04590
2023-06-27 91.04583
2023-06-02 91.03827