Adware/BDSr
Analysis
This adware is installed when browsing to certain web sites. The installation may occur silently and without the user's knowledge. After installation, the web browser Internet Explorer may run slower than expected. Advertisements may pop-up due to the installation of this adware.
The adware consists of a singular .DLL file named "BDSrHook.dll" which will exist in the System32 folder. The adware has a self-updating mechanism which connects with the adware author's website located at 'baidu.com'.
Recommended Action
Check the main screen using the web interface for your FortiGate unit to ensure that the latest AV/NIDS database has been downloaded and installed on your system - if required, enable the "Allow Push Update" option.
Telemetry
Detection Availability
FortiClient | |
---|---|
Extreme | |
FortiMail | |
Extreme | |
FortiSandbox | |
Extreme | |
FortiWeb | |
Extreme | |
Web Application Firewall | |
Extreme | |
FortiIsolator | |
Extreme | |
FortiDeceptor | |
Extreme | |
FortiEDR |
Version Updates
Date | Version | Detail |
---|---|---|
2023-08-08 | 91.05844 |