Abnow.com

Abnow.com Description

ScreenshotAbnow.com is a website that is closely linked to malware. While Abnow.com itself is not particularly dangerous since Abnow.com contains nothing but advertisements, Abnow.com is promoted with the help of dangerous Trojans that can take over a computer system's web browser and force it to visit Abnow.com. A quick look at the Abnow.com web page reveals that not a lot of work was put into Abnow.com. In fact, Abnow.com is practically identical to similar supposed search engines such as hooot.com or mediashifting.com. Its interface is broken up into compartments containing stock photos of exercise-related images and links and a link cloud related to ab training and fitness.

On the upper right side of the Abnow.com page is a search box. This search box does not have any legitimate online search functions. Rather, Abnow.com will simply return results that are irrelevant and composed of little more than additional advertisements. On the top of the page, there is a banner which offers the domain name Abnow.com for sale. ESG security researchers warn against visiting websites like Abnow.com. Not because they can attack your computer system, but because they are closely linked to dangerous online scams which often result in severe malware infections.

How Criminals Attempt to Profit from the Abnow.com Website

The main method in which cybercriminals profit from the Abnow.com website is through advertising revenue generated from the advertisements displayed on this page, the advertisements contained in Abnow.com's fake search results and from each time a visitor clicks one of the many links contained on the Abnow.com web page. There is nothing wrong with profiting from advertising online. In fact, most websites and online businesses' main source of income is advertising. However, criminals take this one step further by using extremely dangerous browser hijackers to promote Abnow.com. The Abnow.com website is linked to the Google Redirect Virus, a Trojan infection that changes the victim's search results after carrying out an online search on Google, Yahoo or other legitimate search engines. While search results will appear normal, clicking on them actually links to the Abnow.com website, thus forcing computer users to visit Abnow.com repeatedly against their will. Do not let criminals profit from forcing you to visit the websites they want. Malware related to the Abnow.com website can be removed with the assistance of a reliable anti-malware application.

Technical Information

File System Details

Abnow.com creates the following file(s):
# File Name Detection Count
1 %Windows%\system32\consrv.dll N/A
2 %Windows%\system32\DRIVERS\mrxsmb.sys N/A

Registry Details

Abnow.com creates the following registry entry or registry entries:
RegistryKey
SubSystems: Windows = basesrv,1 winsrv:UserServerDllInitialization,3 consrv:ConServerDllInitialization,2 sxssrv,4
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Search\Gather\Windows\System Index\Crawls\ll@IsCatalogLevel 0

4 Comments