By SpideyMan in Browser Hijackers Image is a fairly generic-looking website with various links and a stock photo of a model occupying quite a lot of space in its main page. It is fairly obvious that the creators of did not spend too much time to improve the quality of This is because the main point of is not the website itself, which is fairly innocuous, but a browser hijacker that is designed to force computer users to visit repeatedly. is a website designed to display nothing but advertisements and spam forcing computer users to visit repeatedly. The web page has a dark color scheme and is divided into several compartments. These will usually claim to display 'related searches' to the topic the computer user was searching for. In the bottom right corner is a fake link cloud. These links all lead to websites that are made up of nothing but advertisements or to unwanted websites.

The main danger associated with the web page is its link to dangerous browser hijackers. These are usually Trojan infections that take over the victim's computer and change the way it connects to the Internet. By doing this, browser hijackers can cause the victim's web browsers to visit repeatedly as well as change the victim's homepage to A computer infected with a browser hijacker will often display other signs. The most usual symptom is a drastic lowering in the quality of the computer's connection to the Internet, often taking minutes to load a single web page. Frequent pop-up messages, crashes and changes to the computer's web browser settings are other symptoms associated with browser hijackers.

File System Details may create the following file(s):
# File Name Detections
1. %AppData%[trojan name]toolbarcouponsmerchants2.xml
2. %AppData%[trojan name]toolbarcouponsmerchants.xml
3. %AppData%[trojan name]toolbarguid.dat
4. %AppData%[trojan name]toolbaruninstallStatIE.dat
5. %AppData%[trojan name]toolbarversion.xml
6. %AppData%[trojan name]toolbarcouponscategories.xml
7. %AppData%[trojan name]toolbarstat.log
8. %AppData%[trojan name]toolbaruninstallIE.dat
9. %Temp%[trojan name]toolbar-manifest.xml
10. %AppData%[trojan name]toolbardtx.ini
11. %AppData%[trojan name]toolbarpreferences.dat
12. %AppData%[trojan name]toolbarstats.dat
13. %AppData%[trojan name]toolbarlog.txt

Registry Details may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{99079a25-328f-4bd4-be04-00955acaa0a7}InprocServer32 "C:PROGRA~1WINDOW~4ToolBar[trojan name]dtx.dll"
HKEY_LOCAL_MACHINESOFTWAREClasses[trojan name]IEHelper.DNSGuard.1
HKEY_LOCAL_MACHINESOFTWAREClasses[trojan name]IEHelper.DNSGuardCurVer
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{99079a25-328f-4bd4-be04-00955acaa0a7} "[trojan name] Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115} "UrlHelper Class"
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{99079a25-328f-4bd4-be04-00955acaa0a7} "[trojan name] Toolbar"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}ProgID "[trojan name]IEHelper.UrlHelper.1"
HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{A40DC6C5-79D0-4ca8-A185-8FF989AF1115}VersionIndependentProgID "[trojan name]IEHelper.UrlHelper"
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar "[trojan name] Toolbar"


Most Viewed