By GoldSparrow in Browser Hijackers

Threat Scorecard

Ranking: 10,817
Threat Level: 50 % (Medium)
Infected Computers: 2,847
First Seen: June 7, 2016
Last Seen: August 11, 2023
OS(es) Affected: Windows

The domain is associated with a browser add-on that is promoted to users as a shopping helper. The shopping assistant linked to may claim to help users choose better clothing at online stores, and allow users to receive exclusive offers from affiliated stores. The add-on at hand may change your search provider and homepage to, and provide links to sponsored pages on your new tab page. Security investigators report that the site is identical to and and is hosted on the same IP address. The is recognized as a browser hijacker because it is reported to redirect users to less-reputable stores, prevent users from opening the original page, and show pop-up windows from untrusted sources. The search engine on may be a custom version of Google but may not provide safe search results.

The IP address of is detected in communications between cyber threats like Elex and Suptab. The browser hijacker may lead users to download potentially unwanted applications and load insecure pages. Security investigators do not recommend users to shop at online stores that are connected to because their credit card data might be at risk. The browser hijacker may record the Meta tags of pages you often visit to display related video commercials from vendors, and you may experience decreased browser performance. The browser hijacker may run as an executable DLL under the svchost.exe host process by Windows, and users may have a hard time removing it manually. Fortunately, there are anti-spyware tools on the Web that can help you delete the browser hijacker, which do not require extensive technical knowledge.

URLs may call the following URLs:


Most Viewed