W32/Vixup.F!tr

description-logoAnalysis

This Trojan downloads files from the domain 'evko.biz'. The files are retrieved as

3.exe
2.exe
1.exe

and installed to the local system. The downloaded files are also Trojans that download other components.

recommended-action-logoRecommended Action


    FortiGate systems:
  • check the main screen using the web interface to ensure the latest AV/NIDS database has been downloaded and installed -- if required, enable the "Allow Push Update" option

Telemetry logoTelemetry

Detection Availability

FortiGate
Extended
FortiClient
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR