Threat Database Browser Hijackers, a Malicious Shopping Website

There is no doubt that Internet business is an extremely competitive market. There will always be unscrupulous individuals willing to use fraudulent practices to get a leg up on the competition; is a typical example of this. While the poor quality and illegal nature of many of's products do not allow it to compete legitimately, can force users to visit anyway. does this by using browser hijackers, particularly the Google Redirect Virus. These malware infections are designed to take over an Internet browser and then force it to visit certain websites, thus raising that website's traffic and earnings from advertising and affiliate marketing. ESG security researchers consider that is a dangerous website that should be avoided at all costs. Its practice of forcing you to visit with the help of Trojans and browser hijackers is not one that can be associated with web pages with legitimate content. If you have visited, either on your own or through a browser hijacker infection, ESG PC security researchers strongly recommend scanning your computer system with a reliable and up-to-date anti-malware program. and the Google Redirect Virus

The website has been associated with the Google Redirect Virus, a common browser hijacker that criminals use to promote their malicious websites. As its name suggests, the Google Redirect Virus forces search results on the Google search engine to redirect to a variety of malicious websites, such as While the results displayed will appear to be normal, clicking on the top result of the list will take the user to instead of to the web page for the actual search result. Computer users can also be taken to through a variety of fake search engines also associated with the Google Redirect Virus. In those cases, any search entered into the search field will yield fraudulent websites like in the results.

Recognizing a Malware Infection

It is not difficult to recognize that your computer system has been infected with malware associated with According to ESG malware analysts, the main symptom of this kind of infection is being constantly redirected to or other malicious websites. Infected computers will also display frequent pop-up advertisements and will have changes made to the Internet browser settings (for example, the browser's homepage may be changed.)

File System Details may create the following file(s):
# File Name Detections
1. %AppData%\e9hTXwjUVlBz0c
2. %Temp%\8.tmp
3. %AppData%\zEL9gTZqjCkVzNx
4. %AppData%\ldr.ini
5. %AppData%\hBrzONyxA

Registry Details may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ServiceCurrent\(Default) =
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\ServiceCurrent\(Default) =
HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\C0AB6693AB3202B4B9D95716ED5CE4A6\SourceList\LastUsedSource = "n;1;%ProgramFiles%\Common Files\Wise Installation Wizard\"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nvD3onF4aHsJ8234A = "[file and pathname of the sample #1]"


