Threat Database Browser Hijackers Kingkongsearch.com

Kingkongsearch.com

By Domesticus in Browser Hijackers

Kingkongsearch.com Image

Kingkongsearch.com is Dedicated to Distributing Malware

The domain Kingkongsearch.com contains a website that houses a variety of malware designed to hijack your Internet browser and steal your money. A computer infected with rogue security programs from Kingkongsearch.com will typically have all of its searches and Internet traffic redirected towards Kingkongsearch.com, which may continue infecting your computer with different malware. ESG malware researchers have identified Kingkongsearch.com as a dangerous threat to your computer's security. Malware from Kingkongsearch.com should be removed immediately. If you have visited Kingkongsearch.com, you should run a full scan of your computer.
 

How Kingkongsearch.com Monkeys Around with Your Computer’s Security

The domain Kingkongsearch.com is known to distribute two main malware programs: PC Security Guardian rogue security application and Recipe Rewards Toolbar. This second malware program includes Adware.Softomate, a notorious adware infection. Both of these malware programs are disguised as legitimate and helpful add-ons for your computer. PC Security Guardian disguises itself as a legitimate security application while, in reality, infects your computer with a large number of malware threats. The Recipe Rewards Toolbar pretends to be a helpful add-on for your Internet Browser, but it really redirects your browsing and displays constant, unwanted advertisements. Malware from Kingkongsearch.com can also change your registry and make drastic changes to your Internet browser settings.
 

The Domino Effect of Malware from Kingkongsearch.com

ESG malware researchers have identified a dangerous trait of malware from Kingkongsearch.com. This website and its malware are designed to continue infecting your computer with additional malware, creating an effect in which the infection is constantly compounded. For example, the advertisements displayed by the Recipe Rewards Toolbar contain dangerous scripts, which can inject further Trojans and malware into your computer. Likewise, PC Security Guardian's constant browser redirects will lead you to hostile websites designed to infect your computer with an increasing number of malware infections.
 

Shoring Up Your Defenses Against Malware from Kingkongsearch.com

Fully-updated anti-malware scanners should have Kingkongsearch.com on their blacklist. If Kingkongsearch.com isn't on the blacklist, you can manually block this website in your Internet browser settings. By simply visiting this website, there is a very high chance that you have contracted some kind of malware infection. Because of this, ESG malware researchers recommend you make sure that you have not acquired a malware infection after visiting Kingkongsearch.com. If the Recipe Rewards Toolbar or PC Security Guardian are installed on your computer, ESG security researchers strongly recommend that you take steps to remove them from your system with an anti-malware program.

File System Details

Kingkongsearch.com may create the following file(s):
# File Name Detections
1. %Documents and Settings%\All Users\Application Data\[RANDOM CHARACTERS]\[RANDOM CHARACTERS].ocx
2. %Documents and Settings%\All Users\Application Data\[RANDOM CHARACTERS]\[RANDOM CHARACTERS].dll
3. %Documents and Settings%\All Users\Application Data\[RANDOM CHARACTERS]\[RANDOM CHARACTERS].exe
4. %Documents and Settings%\All Users\Application Data\[RANDOM CHARACTERS]\[RANDOM CHARACTERS]\
5. %UserProfile%\Application Data\Best Malware Protection\
6. %Documents and Settings%\All Users\Application Data\[RANDOM CHARACTERS]\[RANDOM CHARACTERS].mof
7. %UserProfile%\Application Data\Best Malware Protection\Instructions.ini
8. %Documents and Settings%\All Users\Application Data\[RANDOM CHARACTERS]\
9. %UserProfile%\Application Data\Best Malware Protection\cookies.sqlite

Registry Details

Kingkongsearch.com may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "RunInvalidSignatures" = "1"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "PC Security Guardian"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options "Debugger" = "svchost.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyServer" = "http=127.0.0.1"
HKEY_CLASSES_ROOT\PersonalSS.DocHostUIHandler

Trending

Most Viewed

Loading...