Threat Database Browser Hijackers Yourprofitclub.com

Yourprofitclub.com

By ESGI Advisor in Browser Hijackers

Yourprofitclub.com is a deceptive website, which tries to imitate a reputable web search engine and is full of tricky ads; however, in reality, Yourprofitclub.com doesn't give any reliable search results related to the Internet user's query. Yourprofitclub.com is associated with some browser hijackers and other malware threats that involve Google Redirect Virus, Google Redirect Hijacker, Google Results Hijacker, etc. If your PC system has been corrupted by some of these threats, you will get repeatedly diverted to Yourprofitclub.com and other infected or advertisement websites. These threats will take over your Internet browser and make changes to some computer system settings, for example, change system files and modify the registry. Yourprofitclub.com also exists as an advertising web page which sponsors some other websites that promote and sell various products. Malware infections related to Yourprofitclub.com can also change your default homepage and search engine. These infections can trace your web browsing activities and collect personal data in order to forward it to remote advertisers or marketing companies. Do not enter Yourprofitclub.com and change your browser settings to block Yourprofitclub.com from opening in your browser. Also, delete all malware threats and browser hijackers connected with Yourprofitclub.com.

File System Details

Yourprofitclub.com may create the following file(s):
# File Name Detections
1. %AppData%\Local\[RANDOM CHARACTERS].exe
2. %Temp%\[RANDOM CHARACTERS]
3. %AllUsersProfile%\[RANDOM CHARACTERS]
4. %AppData%\Local\[RANDOM CHARACTERS]
5. %AppData%\Roaming\Microsoft\Windows\Templates\[RANDOM CHARACTERS]

Registry Details

Yourprofitclub.com may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AntiVirusOverride" = '1'
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command "(Default)" = '"%AppData%\Local\[RANDOM CHARACTERS].exe" -a "%1" %*'
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "(Default)" = '"%AppData%\Local\[RANDOM CHARACTERS].exe" -a "%Program Files%\Internet Explorer\iexplore.exe"'
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command "(Default)" = '"%AppData%\Local\[RANDOM CHARACTERS].exe" -a "%1" %*'
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = '"%%AppData%\Local\[RANDOM CHARACTERS].exe" -a "%Program Files%\Mozilla Firefox\firefox.exe"'
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command "(Default)" = '"%AppData%\Local\[RANDOM CHARACTERS].exe" -a "%Program Files%\Mozilla Firefox\firefox.exe" -safe-mode'
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\BrowserEmulation "TLDUpdates" = '1'
HKEY_CLASSES_ROOT\.exe\shell\open\command "(Default)" = '"%AppData%\Local\[RANDOM CHARACTERS].exe" -a "%1" %*'

Trending

Most Viewed

Loading...