Click here for AnswerPool.com Home page


Google

    AnswerPool.com  Hop To Forum Categories  Computers  Hop To Forums  Security Issues    Gumblar AKA Troj/JSRedir-R is now the #1 Pest

Moderators: Dwight
Go
Post
Find
Notify
Tools
Reply
  
  Login/Join 
Diamond Enthusiast

2009 Enthusiast of the Year
Picture of bedstor
Posted
quote:
A malware attack that uses Google's search results to redirect internet users to fraudulent websites is a rapidly growing threat, experts have warned.

The web attack, called Gumblar, has been described as a multi-stage series of compromises.
This means it uses a number of different strategies to gain control of personal computers, spread malware and steal personal information.

Gumblar works by using a technique known as a man-in-the-browser attack. When malicious code injects itself into a user's browser and then monitors requests from that browser, such as a search for a tennis website. It then redirects the requests to fraudulent websites.
Security firm ScanSafe said that this type of attack could give control of a victim's computer to cybercriminals - leading to a myriad of security issues including personal data theft.

Sophos has also reported that Gumblar, known also as Troj/JSRedir-R, had taken the number one spot as the web's most common infection.
According to the security company, Gumblar is six times more prevalent than the next closest threat and accounts for around 42 per cent of all of Sophos' detections.

Google delisted the compromised websites last month after an investigation, but since then the authors of Gumblar have redoubled their efforts warned ScanSafe. It said that compromises from Gumblar were up 181 per cent from last week.
Mary Landesman, senior security researcher at ScanSafe, described Gumblar as complex and sophisticated.
"The cybercriminals responsible for Gumblar have learned to morph its features quickly," added Landesman. "This, coupled with Gumblar's other dynamic characteristics, is allowing the compromise to disseminate more rapidly than others we've seen."

As for "fixes" we are still looking for these!

Here is the Latest off Google
 
Posts: 14847 | Location: 6 miles west of Wigan UK | Registered: 06-05-02Reply With QuoteReport This Post
Diamond Enthusiast

2009 Enthusiast of the Year
Picture of bedstor
Posted Hide Post
Here is the Latest information on this Pest Plus How to Detect the infection
NOTE: It originates in China! And the Domain name may need blocking on your browser Security Controls/Restricted Sites list? Roll Eyes
 
Posts: 14847 | Location: 6 miles west of Wigan UK | Registered: 06-05-02Reply With QuoteReport This Post
Site
Administrator

Picture of DorianGreyed
Posted Hide Post
quote:
NOTE: It originates in China!



Gasp!
 
Posts: 19560 | Location: Lincoln Place, Granite City, Illinois, USA | Registered: 06-03-02Reply With QuoteReport This Post
Diamond Enthusiast

2009 Enthusiast of the Year
Picture of bedstor
Posted Hide Post
DG? The Russians are Now Mostly Friendly (That was the original source of grief on this Front) Europe wise Still getting Hits from Eastern European Countries And Thankfully Little From the Middle East/Africa People cannot afford the Prices of PC's there
Another source of Spammers which has quietened down is Brazil Was Bad when I started Surfing 10 years ago,especially on attachments to unsolicited email and IM Spam via ICQ
 
Posts: 14847 | Location: 6 miles west of Wigan UK | Registered: 06-05-02Reply With QuoteReport This Post
  Powered by Social Strata  
 

    AnswerPool.com  Hop To Forum Categories  Computers  Hop To Forums  Security Issues    Gumblar AKA Troj/JSRedir-R is now the #1 Pest

© 2002-2010 AnswerPool.com
All Rights Reserved
Using This Site Means You Accept Its Terms of Service and Privacy Policy
Close Cover Before Striking
3D Glasses Required for Optimal Viewing
Now in HD and Surround Sound
Offer Void Where Prohibited by Law
There's a Bathroom on the Right
Caution - Objects May Be Closer Than They Appear
Anything You Post May Be Used Against You in the Court of Public Opinion
Notice: All Employees and Customers Are Required to Wash Their Hands and Feet Before Posting by the Board of Health
Hands and Feet MUST Be Kept Inside Vehicle at All Times



Visit DiscussionPool.com!