Home / malwarePDF  

Trojan:JS/Dursg.G


First posted on 17 May 2010.
Source: SecurityHome

Aliases :

Trojan:JS/Dursg.G is also known as Trojan.JS.Redirector.AI (BitDefender), Win32/Dursg.C (CA).

Explanation :

Trojan:JS/Dursg.G is a trojan that redirects Web searches performed using the Web browser Firefox and when a user performs key word searches in specific search sites.
Top

Trojan:JS/Dursg.G is a trojan that redirects Web searches performed using the Web browser Firefox and when a user performs key word searches in specific search sites. InstallationTrojan:JS/Dursg.G is installed by other malware or by visiting a malicious Web page. It arrives in the system as a Firefox mechanism that allows applications to add elements to the browser interface and is present as a file named "overlay.xul". Payload Redirects user searches When a user uses the Web browser to conduct searches using certain search engines, the browser is redirected to the following servers:

  • stepandomain.com
  • tetrosearch.com
  • The following search engines are impacted by the trojan:
  • Google.com
  • Ask.com
  • Yahoo.com
  • AOL.com search
  • Bing.com


  • Analysis by Tim Liu

    Last update 17 May 2010

     

    TOP