Main Menu
Home
Bookmark
Contact Us



Partners
 
Tro.YourStartingPage Trojan Information

Name: Tro.YourStartingPage
Category: Trojan
Advice: Remove
Risk: High Risk High risk threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction. May open up communication ports, use polymorphic tactics, stealth installations, and/or anti-spy counter measures. May use a security flaw in the operating system to gain access to your computer.
Description: Tro.YourStarting page is a program that modifies the Windows system hosts file.

Tro.YourStarting creates the following entries in the hosts file:

213.222.11.6 auto.search.msn.com
213.222.11.6 ieautosearch

If a user enters an incorrect URL, the web browser will be re-directed (hijacked) to http://www.yourstartingpage.com/ or http://www.findthewebsiteyouneed.com/. Tro.YourStartingPage also generates potentially unwanted pop-up advertising.

Signatures: process: sp2update00.exe: MD5 Hash: ec50c17528840b7a32a... process: asupdate.exe: MD5 Hash: 3657513c9b8c560eccb... process: msresearch.exe: MD5 Hash: a56e4354d62cc09a6c1..
Type: Trojan -



Top Trojan Visited Pages:
Tro.Downloader.loadadv - 399 visits
Enable Regedit - 185 visits
Java.ClassLoader.Dummy.d - 176 visits
Trojan.BankerSpy - 169 visits
RBot.steam - 84 visits
Startup.NameShifter.Xgtray - 76 visits
Tro.Bagle.SP - 58 visits
Trojan.BHO.NameShifter.EZ - 54 visits
Tro.YourStartingPage - 53 visits
Trojan.Win32/Painwin.A - Alias: Trojan:Win32/Painwin.A - 52 visits

Random Trojan Pages:
Trojan.BHO.NameShifter.FY
Ubuster
BHO.NameShifter.IO
VB.AL
Backdoor.IRC.ZCrew
trojan.Startup.NameShifter.winok
Sysmon - Alias: Backdoor.Sysmon
Trojan.BHO.NameShifter.AH
Backdoor.Small.d - Alias: Backdoor.Dumador.c
Pamp.928.Batch


 


© 2006-2008 spyware32.com - Privacy Policy