Friday, February 19, 2010

Js/Redirector Malware

Js/redirector.bk is a Malware(It is a malicious software which includes viruses,worm,trojan programming that collect the user's information like surfing and downloading without any permission) or we call it JavaScript Trojan detected by Quick Heal Antivirus. It is the detection for obfuscated JavaScript contained within Web pages. It generates dynamic JavaScript code in the files which results in website malfunctioning or website down.


Detection:- Trojan-Downloader.JS.Pegel.b (17th place on the Internet by Kaspersky)

JS_ONLOAD.SMF by (Trend Micro)


Symptoms:- Slow access of shared drives in the network and corruption of .js files.

Sometimes Quick Heal Antivirus removes the infected Java Script files which results in website malfunctioning.


Here is the screenshot of a website www.cssoftsolutions.com which is infected by the java script Trojan.









The virus can be removed by using Anti malwares: -

Microsoft fore front,

Microsoft security essentials

Windows defender (The computer must run the genuine Windows).


By following the link below you can browse the all type of Malwares which are a class of Js/redirector.

http://www.microsoft.com/Security/portal/Threat/Encyclopedia/Browse.aspx?L=R&Page=33


I asked for the support from Quick Heal three days before. Those people collected all the required reports to remove the bugs. So I am waiting for the response.


Resolution:- I had a discussion with Quick Heal providers and the problem of infecting Java Script files or removing them has been solved by installing the definitions of Quick Heal Antivirus for dated 10 March 2010.

Now all .Js files are safe and i am not getting any Unknown Error in my Website which is infected by Js/redirector.bk (Malware).