Riskware/DriverTurbo

description-logoAnalysis

Riskware/DriverTurbo is a generic detection for a Riskware. Since this is a generic detection, samples that are detected as Riskware/DriverTurbo may have varying behaviour.
Below are some of its observed behaviours:

  • This detection is for a series of incomplete driver installation utility.
    The application requires user's to pay/register up front before the supposedly drivers are installed.
    User's are cautioned not to use these kind of applications.
    Below are some of its illustrations:

    • Figure 1: Interface.


    • Figure 2: Interface.


    • Figure 2: Interface.


recommended-action-logoRecommended Action

  • Make sure that your FortiGate/FortiClient system is using the latest AV database.
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.

Telemetry logoTelemetry

Detection Availability

FortiGate
Extended
FortiClient
Extreme
FortiAPS
FortiAPU
FortiMail
Extreme
FortiSandbox
Extreme
FortiWeb
Extreme
Web Application Firewall
Extreme
FortiIsolator
Extreme
FortiDeceptor
Extreme
FortiEDR

Version Updates

Date Version Detail
2024-02-29 92.02027
2024-02-29 92.02022
2024-02-28 92.02003
2023-06-13 91.04163
2023-05-30 91.03736
2023-04-18 91.02485
2023-04-10 91.02231
2022-12-01 90.08340
2021-10-26 89.06291
2021-03-02 84.00417