Troubleshoot Tracking Process injection

NZRADAR

Level 3
Thread author
Verified
Well-known
Aug 8, 2013
145
343
167
New Zealand
Hi there Team MalwareTips :)

I use a program quite regularly to check various memory and internet communications called
Crowd Inspect Host-Based Process Inspection
http://www.crowdstrike.com/community-tools/index.html


Recently I have noticed Firefox.exe in its list and shows up with process injection (red warning)
I have included a capture of injection in cyberfox in this instance.


Now my question is how do you determine the source of the injection, what tools do I need to
trace this and how to tell if injection is malicious or abnormal?

Thanks for any help on the mattter / Computer has been scanned EEK, Malwarebytes. Webroot,
Also I use Norton Internet Security Realtime and Malwarebyes Anti exploit

I have no warnings from any of these tools even when CrowdStike shows an injection

 

Attachments

  • inject.JPG
    inject.JPG
    185 KB · Views: 529