Browserseek.com

By GoldSparrow in Browser Hijackers

Browserseek.com Image

The Browserseek.com fake search engine is one of the many websites linked to the Google Redirect Virus browser hijacker. While, in itself, Browserseek.com contains little dangerous material, ESG security researchers consider that Browserseek.com is a dangerous website that should be avoided at all costs. This is because Browserseek.com is closely associated with dangerous malware infections such as the Google Redirect Virus and its associated rootkits. Rootkits are considered among some of the most difficult to remove malware infections in existence. Rootkits associated with Browserseek.com can completely hide the presence of other malware on your computer system and are notoriously difficult to remove from a computer. If your Internet browser is forcing you to visit Browserseek.com repeatedly, this is a definite sign that you have acquired a browser hijacker infection. If attempts to remove Browserseek.com with a legitimate anti-malware program fails to remove this browser hijacker this may indicate that your computer system has become infected with a rootkit. In cases of a Browserseek.com-related rootkit infection, a special anti-rootkit application may be necessary to remove the problem from your computer system.

Symptoms of Malware Associated with Browserseek.com

As was mentioned before, Browserseek.com is closely linked to the Google Redirect Virus. This malware infection, better classified as a Trojan than a virus (because, unlike a virus, the Google Redirect Virus cannot spread on its own), receives its name because of its ability to alter the results on the most popular search engines, particularly on Google. According to ESG security researchers, the following are some definite signs that your computer is infected with a Browserseek.com-related browser hijacker:

  1. Google Redirect Virus can alter the links on any search results displayed on Google or other popular search engines. While the results may appear to be normal, clicking on the links will actually take the user to the Browserseek.com website.
  2. A computer system infected with Browserseek.com-related malware will often have changes made to its system settings, particularly those that affect how Browserseek.com connects to the Internet. It is common to find that a normal online activity takes the victim to the Browserseek.com website after entering another address into the address bar or clicking on the navigation toolbar.
  3. If your Internet browser is infected with Browserseek.com-related malware, it is common to find that your homepage and bookmarks have been changed to Browserseek.com or any of its related websites.

File System Details

Browserseek.com may create the following file(s):
# File Name Detections
1. %AppData%BrowserSeektoolbardtx.ini
2. %AppData%BrowserSeektoolbarguid.dat
3. %AppData%BrowserSeektoolbaruninstallIE.dat
4. %AppData%BrowserSeektoolbaruninstallStatIE.dat
5. %AppData%BrowserSeektoolbarcouponsmerchants2.xml
6. %AppData%BrowserSeektoolbarcouponsmerchants.xml
7. %AppData%BrowserSeektoolbarstats.dat
8. %AppData%BrowserSeektoolbarstat.log
9. %Temp%BrowserSeektoolbar-manifest.xml
10. %AppData%BrowserSeektoolbarcouponscategories.xml
11. %AppData%BrowserSeektoolbarlog.txt
12. %AppData%BrowserSeektoolbarpreferences.dat
13. %AppData%BrowserSeektoolbarversion.xml

Registry Details

Browserseek.com may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINESOFTWAREClassesBrowserSeekIEHelper.DNSGuardCLSID
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar "BrowserSeek Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{99079a25-328f-4bd4-be04-00955acaa0a7} "BrowserSeek Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesBrowserSeekIEHelper.DNSGuardCurVer
HKEY_LOCAL_MACHINESOFTWAREClassesBrowserSeekIEHelper.DNSGuard.1
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{99079a25-328f-4bd4-be04-00955acaa0a7}InprocServer32 "C:PROGRA~1WINDOW~4ToolBarBrowserSeekdtx.dll"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}ProgID "BrowserSeekIEHelper.UrlHelper.1"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115} "UrlHelper Class"
HKEY_LOCAL_MACHINESOFTWAREClassesBrowserSeekIEHelper.DNSGuard
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{99079a25-328f-4bd4-be04-00955acaa0a7}"BrowserSeek BrowserSeek Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}VersionIndependentProgID "BrowserSeekIEHelper.UrlHelper"

Trending

Most Viewed

Loading...