Threat Database Trojans Troj/JSRedir-GZ

Troj/JSRedir-GZ

By Domesticus in Trojans

Threat Scorecard

Threat Level: 90 % (High)
Infected Computers: 7
First Seen: July 2, 2012
Last Seen: March 15, 2023
OS(es) Affected: Windows

Troj/JSRedir-GZ is a Trojan that propagates via unsolicited ADP (a payroll processing company) emails. Two variations of the ADP fake emails are circulating on the web. The first is a plain text message with the subject 'ADP Funding Notification - Debit Draft' instructing recipients to click a link to view an alleged transaction report. The second is more professional looking and offers to human resource specialists that ADP is updating its security processes and a recipient needs to login and be guided on the new procedures. The links included in all of the malicious messages redirect affected PC users to hijacked websites that try to load a malicious JavaScript that has all of the significant signs of the Windows XP Restore. The malicious JavaScript is detected as Troj/JSRedir-GZ.

SpyHunter Detects & Remove Troj/JSRedir-GZ

File System Details

Troj/JSRedir-GZ may create the following file(s):
# File Name MD5 Detections
1. rrggyt.html 0994d1b78069fed714b86f26793ffac6 0

Trending

Most Viewed

Loading...