Threat Database Trojans TROJ_AGENT.MGSM

TROJ_AGENT.MGSM

By Domesticus in Trojans

TROJ_AGENT.MGSM is a Trojan infection contained in a malicious DLL file named myGeeksmail.dll, a browser hijacker used to cause redirects on the infected computer. TROJ_AGENT.MGSM is typically installed on the victim's computer by opening an infected email attachment. TROJ_AGENT.MGSM is also often bundled with other files, particularly on Torrent networks. TROJ_AGENT.MGSM may also be associated with browser toolbars designed specifically to cause browser redirects and force computer users to visit the same website repeatedly. If your web browser is forcing you to visit certain websites against your will, it is very probable that your computer has become infected with a browser hijacker. That browser hijacker may be TROJ_AGENT.MGSM.

TROJ_AGENT.MGSM is commonly distributed in a malicious DLL file that is about 80 KB in size. Security researchers detected TROJ_AGENT.MGSM for the first time in September of 2012. TROJ_AGENT.MGSM has been linked to a browser toolbar that is actually a disguised malware infection used to carry out a common scam. This toolbar installs a Trojan contained in the file myGeeksmail.dll, which then uses DLL hijacking techniques to infect the victim's computer while being difficult to detect or remove from the infected machine.

TROJ_AGENT.MGSM is designed to force the victim to visit certain websites repeatedly. This allows criminals to profit from advertising revenue and shady pay per click marketing schemes. This is one of the most common online scams, second only to fake security software infections. Once installed on the victim's computer, TROJ_AGENT.MGSM can change the victim's homepage, force the infected web browser to display pop-up windows, and can also cause a number of other, annoying problems on the infected computer.

TROJ_AGENT.MGSM and Falsified Adobe Certificates

While there are many browser hijackers out there, TROJ_AGENT.MGSM in particular has attracted a lot of attention because TROJ_AGENT.MGSM uses hacked Adobe certificates to convince its victims that TROJ_AGENT.MGSM is a valid program. While these certificates normally allow computer users to know that their software is valid, Adobe has issued warnings of falsified certificates having been made available to several malware threats. Using these certificates, TROJ_AGENT.MGSM can initiate a social engineering attack that tries to convince computer users that TROJ_AGENT.MGSM is actually a legitimate program and that TROJ_AGENT.MGSM is safe to install, despite the fact that TROJ_AGENT.MGSM is actually a dangerous browser hijacker designed to wreak havoc on the victim's computer.

Trending

Most Viewed

Loading...