- Aug 8, 2013
- 145
Hi there Team MalwareTips
I use a program quite regularly to check various memory and internet communications called
Crowd Inspect Host-Based Process Inspection
http://www.crowdstrike.com/community-tools/index.html
Recently I have noticed Firefox.exe in its list and shows up with process injection (red warning)
I have included a capture of injection in cyberfox in this instance.
Now my question is how do you determine the source of the injection, what tools do I need to
trace this and how to tell if injection is malicious or abnormal?
Thanks for any help on the mattter / Computer has been scanned EEK, Malwarebytes. Webroot,
Also I use Norton Internet Security Realtime and Malwarebyes Anti exploit
I have no warnings from any of these tools even when CrowdStike shows an injection
I use a program quite regularly to check various memory and internet communications called
Crowd Inspect Host-Based Process Inspection
http://www.crowdstrike.com/community-tools/index.html
Recently I have noticed Firefox.exe in its list and shows up with process injection (red warning)
I have included a capture of injection in cyberfox in this instance.
Now my question is how do you determine the source of the injection, what tools do I need to
trace this and how to tell if injection is malicious or abnormal?
Thanks for any help on the mattter / Computer has been scanned EEK, Malwarebytes. Webroot,
Also I use Norton Internet Security Realtime and Malwarebyes Anti exploit
I have no warnings from any of these tools even when CrowdStike shows an injection