HTML/IFrame.B!tr

description-logoAnalysis

HTML/IFrame.B!tr is a detection for an HTML Iframe trojan.

  • Following are some of the near/exact IOCs/file hash associated with this detection:
    • 987be312a7b33ec5d8142989ff89c9c9

  • The following are some Iframe URLs we noticed for some samples:

    • Figure 1: Iframe.



recommended-action-logoRecommended Action

  • Make sure that your FortiGate/FortiClient system is using the latest AV database.
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.

Telemetry logoTelemetry

Detection Availability

FortiGate
FortiClient
FortiAPS
FortiAPU
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR

Version Updates

Date Version Detail
2023-11-20 91.08976
2023-10-18 91.07987
2023-10-03 91.07527
2023-09-08 91.06776
2023-08-25 91.06365
2023-08-15 91.06054
2023-08-04 91.05731
2023-04-18 91.02490
2023-02-24 91.00894
2023-02-24 91.00893