Home Malware Programs Browser Hijackers Onlinesecuritymetre.in

Onlinesecuritymetre.in

Posted: April 27, 2015

Onlinesecuritymetre.in is a domain that may be used to generate commands for threats, provide threats for download or receive information collected from an infected PC. Although not associated with browser hijackers or other, typical browser-based issues, Onlinesecuritymetre.in does have ties to threats that may contact Onlinesecuritymetre.in automatically and use it to initiate future attacks. Since the responsible threat still is being identified, malware researchers are limiting to recommend scanning your hard drive with anti-malware products after any encounters with Onlinesecuritymetre.in, no matter how minor.

Onlinesecuritymetre.in: A Rising Meter of Your PC's Poor Security

Onlinesecuritymetre.in is part of the infrastructure of at least one confirmed campaign of backdoor Trojans that circumvent the network security of infected PCs to allow third parties to have remote access to the systems. Although virtually identical tactics are many years old, malware experts first verified Trojan attacks that exploit the Onlinesecuritymetre.in domain in late April of 2015. Unlike browser hijackers, these threats attempted to initiate contact with Onlinesecuritymetre.in without drawing the PC user's attention to the site, indicating that Onlinesecuritymetre.in primarily is intended for the use of cyber third parties, not victims.

In typical attacks, any contact with Onlinesecuritymetre.in is initiated through additional explorer.exe processes that are created especially for the backdoor Trojan in question. You may be able to view these processes through a memory manager, such as Task Manager, although care should be taken to avoid confusing them with the singular explorer.exe process always found in Windows. The possibility of drastic memory usage also may cause some other, visible symptoms, such as slowdowns, crashes and poor performance.

Onlinesecuritymetre.in's contact also may be obfuscated with the HTXP exploit, a simple URL-naming vulnerability that may avoid some basic Web browsing security features. Malware researchers have yet to analyze all payloads from Onlinesecuritymetre.in. However, their original examinations show evidence of Onlinesecuritymetre.in's being used to load threatening HTML components that could install new threats onto an infected computer. Such an attack is typical of a Trojan dropper, Trojan downloader and many high-level threats with backdoor features, such as Zbot.

Getting Online Security Back to Par

Onlinesecuritymetre.in, and other domains associated with HTXP exploits, frequently are major components of threat distribution networks. However, despite Onlinesecuritymetre.in's format as a Web domain, you shouldn't assume to be able to identify a download through Onlinesecuritymetre.in by eye. PC users without proactive, passive security features are unlikely to be able to detect an Onlinesecuritymetre.in attack, or stop other threats from using Onlinesecuritymetre.in to cause additional infections.

Onlinesecuritymetre.in is relatively new to the threat industry but shows most of the classic scenes of being part of the networks of high-level threats. Accordingly, any warning related to Onlinesecuritymetre.in or contact with this domain must be responded to with the same diligence you would show towards a confirmed attack by a rootkit or a Trojan. As always is the case, malware researchers can offer no solution safer or easier than scanning your PC with reliable security utilities, which hopefully will identify and remove all threats before they may inflict any damage.

Loading...