Questdns.com

By Domesticus in Browser Hijackers

The domain Questdns.com contains a fake search engine which is associated with a browser hijacker of the same name. Like most browser hijackers, the Questdns.com browser hijacker is designed to boost Questdns.com's traffic, by forcing people to visit this rogue search engine website. Questdns.com belongs to a sizable family of browser hijackers and malicious search engines boasting similar interfaces and modus operandi. Some examples of clones of Questdns.com include QueryExplorer.com, Zinky and BarQuery.com. All of the clones of Questdns.com will display results from a list of websites that have paid for their services, rather than legitimate search results. Browser hijackers associated with Questdns.com will also cause an infected computer system to display pop-up windows, fake error messages, advertisements and invariably return to the Questdns.com website. ESG PC security researchers recommend getting rid of any malware associated with Questdns.com using a strong, reliable anti-malware application. Browser hijackers may not be considered among the most severe malware infections; in fact, many inexperienced computer users will choose to ignore their browser's behavior and simply continue to use their computer. This is a grave mistake. According to ESG malware analysts, leaving the Questdns.com browser hijacker active on an infected computer will, almost invariably, lead to additional malware problems further down the line. These may lead to identity theft, loss of sensitive data and online accounts and the infected computer system being eventually used for criminal activities, such as sending out spam email, performing DDoS attacks or participating in money laundering.

Do Not Become a Victim of the Questdns.com Scam

The reason why criminals want you to visit Questdns.com repeatedly is because each visit helps them generate money in an illegal manner. Like most websites, Questdns.com makes its money through advertisement impressions and by promoting certain websites with the use of affiliate marketing techniques. However, the criminals behind Questdns.com use malware, such as Questdns.com's browser hijacker, in order to force visitors to visit their malicious website, boosting their page views, advertisement impressions and advertisement clicks in the process. These can quickly add up, allowing criminals to profit from taking over your computer system and giving you a headache. Do not become a victim of the Questdns.com scam; scan your computer system regularly with a reliable, fully-updated anti-malware tool. It is also essential to stay away from unsafe websites, such as file sharing websites and pornographic video galleries.

File System Details

Questdns.com may create the following file(s):
# File Name Detections
1. %AppData%QuestDNStoolbarstat.log
2. %AppData%QuestDNStoolbaruninstallStatIE.dat
3. %AppData%QuestDNStoolbarpreferences.dat
4. %AppData%QuestDNStoolbarcouponsmerchants.xml
5. %AppData%QuestDNStoolbardtx.ini
6. %AppData%QuestDNStoolbaruninstallIE.dat
7. %AppData%QuestDNStoolbarlog.txt
8. %AppData%QuestDNStoolbarcouponscategories.xml
9. %Temp%QuestDNStoolbar-manifest.xml
10. %AppData%QuestDNStoolbarstats.dat
11. %AppData%QuestDNStoolbarguid.dat
12. %AppData%QuestDNStoolbarversion.xml
13. %AppData%QuestDNStoolbarcouponsmerchants2.xml

Registry Details

Questdns.com may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINESOFTWAREClassesQuestDNSIEHelper.DNSGuardCurVer
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}VersionIndependentProgID "QuestDNSIEHelper.UrlHelper"
HKEY_LOCAL_MACHINESOFTWAREClassesQuestDNSIEHelper.DNSGuard.1
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115} "UrlHelper Class"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{99079a25-328f-4bd4-be04-00955acaa0a7} "QuestDNS Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesQuestDNSIEHelper.DNSGuard
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{99079a25-328f-4bd4-be04-00955acaa0a7} "QuestDNS QuestDNS Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}ProgID "QuestDNSIEHelper.UrlHelper.1"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{99079a25-328f-4bd4-be04-00955acaa0a7}InprocServer32 "C:PROGRA~1WINDOW~4ToolBarQuestDNSdtx.dll"
HKEY_LOCAL_MACHINESOFTWAREClassesQuestDNSIEHelper.DNSGuardCLSID
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar "QuestDNS Toolbar"

Trending

Most Viewed

Loading...