Jump to content

Recommended Posts

Hi,

I am using Malwarebytes Premium v. 4.5.10.200 and during the daily scan it reported that the Fortclient VPN online installer is infected with Spyware.PasswordStealer. I have had this file for 2 months and it has only just reported it. I have scanned the file with Symantec Endpoint Protection 14.3 RU5 and it comes back as clean. HP Wolf/Smart Scan also found it clean. The Forticlient VPN installer was downloaded directly from Fortinet ( https://links.fortinet.com/forticlient/win/vpnagent ). It was also not detected by my Fortigate UTM/Antivirus. I just downloaded the file again and scanned the new download (same version) and it says it is infected. Can you please investigate this further.

Malwarebytes Log extract:

-Software Information-

Version: 4.5.10.200

Components Version: 1.0.1702

Update Package Version: 1.0.56867

Licence: Premium

 

-System Information-

OS: Windows 10 (Build 19044.1766)

CPU: x64

File System: NTFS

User: System

File: 1

Spyware.PasswordStealer, C:\USERS\xxxxx\DOWNLOADS\FORTICLIENTVPNONLINEINSTALLER.EXE, No Action By User, 533, 1068539, 1.0.56867, , ame, , 5276F659E56BCC88D3BB55127677D8E8, 51C5BD277D73FF062AD4A083FA6CD9A718748CAA18659900B17F1255CBFF508E

 

image.thumb.png.7c2ebef3a9b9e64c21cdb42a627c2ee6.png

Regards

 

PD

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.