MSIL/Agent.RYA!tr.pws
Analysis
MSIL/Agent.RYA!tr.pws is classified as a password-stealing trojan.
A password-stealing trojan searches the infected system for passwords and sends them to a remote attacker.
The Fortinet Antivirus Analyst Team is constantly updating our descriptions. Please check the FortiGuard Encyclopedia regularly for updates.
Recommended Action
- Make sure that your FortiGate/FortiClient system is using the latest AV database.
- Quarantine/delete files that are detected and replace infected files with clean backup copies.
Telemetry
Detection Availability
FortiGate | |
---|---|
Extreme | |
FortiClient | |
Extended | |
FortiMail | |
Extended | |
FortiSandbox | |
Extended | |
FortiWeb | |
Extended | |
Web Application Firewall | |
Extended | |
FortiIsolator | |
Extended | |
FortiDeceptor | |
Extended | |
FortiEDR |
Version Updates
Date | Version | Detail |
---|---|---|
2022-07-19 | 90.04286 | |
2022-06-07 | 90.03046 | |
2022-05-21 | 90.02513 | |
2021-04-13 | 85.00424 | |
2021-01-26 | 83.57800 | Sig Updated |
2020-12-01 | 82.23700 | Sig Updated |
2020-11-17 | 81.90300 | Sig Updated |
2020-11-10 | 81.73400 | Sig Updated |
2020-11-07 | 81.67300 | Sig Updated |
2020-11-04 | 81.58800 | Sig Updated |