Riskware/EoRezo

description-logoAnalysis


This detection is for installers of applications that bundle themselves with toolbars or Browser Helper Objects (BHOs) that usually display some form of adverstisement. The detection does not indicate the presence of malware, but is used to classify software with possibly unwanted behavior that may be a potential risk to users.
Riskware applications usually affect productivity and are thus not useful in a corporate environment.
Below are screenshots of some of the installation packages:


  • Figure 1: Installation prompt example 1.


  • Figure 2: Installation prompt example 2.


  • Figure 3: Installation prompt example 3.

recommended-action-logoRecommended Action

  • Make sure that your FortiGate/FortiClient system is using the latest AV database.
  • Quarantine/delete files that are detected and replace infected files with clean backup copies.

Telemetry logoTelemetry

Detection Availability

FortiGate
Extended
FortiClient
FortiMail
FortiSandbox
FortiWeb
Web Application Firewall
FortiIsolator
FortiDeceptor
FortiEDR

Version Updates

Date Version Detail
2024-04-19 92.03533
2024-04-14 92.03382
2024-04-12 92.03307
2024-04-11 92.03272
2024-04-08 92.03191
2024-04-06 92.03134
2024-04-06 92.03131
2024-04-02 92.03012
2024-04-01 92.02981
2024-03-26 92.02811