W32/Mekotio.DD!tr.spy
Analysis
W32/Mekotio.DD!tr.spy is classified as a spy trojan.
A spy trojan is a type of malware that has the capability to gather information from the infected system without consent from the user. This information is then sent to a remote attacker.
The Fortinet Antivirus Analyst Team is constantly updating our descriptions. Please check the FortiGuard Encyclopedia regularly for updates.
Recommended Action
- Make sure that your FortiGate/FortiClient system is using the latest AV database.
- Quarantine/delete files that are detected and replace infected files with clean backup copies.
Telemetry
Detection Availability
FortiClient | |
---|---|
Extreme | |
FortiMail | |
Extreme | |
FortiSandbox | |
Extreme | |
FortiWeb | |
Extreme | |
Web Application Firewall | |
Extreme | |
FortiIsolator | |
Extreme | |
FortiDeceptor | |
Extreme | |
FortiEDR |
Version Updates
Date | Version | Detail |
---|---|---|
2021-08-31 | 88.00773 | |
2021-06-22 | 87.00115 | |
2021-02-09 | 83.91300 | Sig Updated |
2020-11-18 | 81.92900 | Sig Added |
2020-09-29 | 80.72800 | Sig Updated |
2020-09-08 | 80.22400 | Sig Updated |
2020-06-16 | 78.20800 | Sig Updated |
2020-06-09 | 78.04000 | Sig Updated |
2020-05-26 | 77.70500 | Sig Updated |
2020-05-19 | 77.53700 | Sig Updated |