Home Malware Programs Adware Adware.Search Know

Adware.Search Know

Posted: November 2, 2015

Threat Metric

Ranking: 9,585
Threat Level: 2/10
Infected PCs: 46,043
First Seen: November 2, 2015
Last Seen: March 9, 2025
OS(es) Affected: Windows

Technical Details

Registry Modifications

The following newly produced Registry Values are:

CLSID{083DA3DE-A0D0-4793-A5A9-1940700C785D}{3beacc4a-b617-4519-bb20-e5970414cbe4}{42273140-60DE-4DE5-8B4B-F649F8CCF98B}{6DF7B721-D460-476E-A657-5A3E359A9104}{6F387E5F-B247-45E2-A4B9-A1291DF085E4}{73e63875-3642-489c-b934-1c996afd502f}{75A6D549-54C1-4B06-8039-B7F2C67BA44A}{84853B69-2D54-4CF5-989F-BE2A792B2505}{8C327BD5-D857-4594-86D1-9D218E2F52CE}{B0487560-F3CF-4EFA-A24F-CB297711B29A}{cdc9b2b6-5796-4d44-bc7a-2fa644057d7f}{da8dfa05-93a3-4617-8c86-bbfc625f8fa7}{E3DAED89-1BEA-46E1-9EE0-5FC86D45DE91}{F4D738F7-CF85-4D7D-88B0-D24E78E0426E}File name without pathhttps_searchandknow-a.akamaihd.net_0.localstoragehttps_searchknow-a.akamaihd.net_0.localstoragehttps_searchknow-a.akamaihd.net_0.localstorage-journalhttps_searchquickknow-a.akamaihd.net_0.localstoragehttps_searchtooknow-a.akamaihd.net_0.localstoragehttps_searchtooknow-a.akamaihd.net_0.localstorage-journalhttps_searchwebknow-a.akamaihd.net_0.localstoragehttps_searchwebknow-a.akamaihd.net_0.localstorage-journalsearchandknow-a.akamaihd[1].xmlsearchknow-a.akamaihd[1].xmlsearchmoreknow-a.akamaihd[1].xmlSearchMoreKnowDesktopSearch.lnksearchquickknow-a.akamaihd[1].xmlsearchtooknow-a.akamaihd[1].xmlsearchwebknow-a.akamaihd[1].xmlHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\searchknow-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\searchtooknow-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\searchwebknow-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\searchknow-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\searchtooknow-a.akamaihd.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\searchwebknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\Approved Extensions\{1404B643-37F5-481A-A36D-E6EEACB01AE1}Software\Microsoft\Internet Explorer\Approved Extensions\{267900E9-D7C1-4E8E-B09B-23B437693506}SOFTWARE\Microsoft\Internet Explorer\Approved Extensions\{596CE978-4BA2-45EB-9F2F-CFE184DCF44D}Software\Microsoft\Internet Explorer\Approved Extensions\{73E63875-3642-489C-B934-1C996AFD502F}Software\Microsoft\Internet Explorer\Approved Extensions\{9CCFBEA0-8E85-41CA-B3D1-5DDBE4FF9DBE}Software\Microsoft\Internet Explorer\Approved Extensions\{CDC9B2B6-5796-4D44-BC7A-2FA644057D7F}Software\Microsoft\Internet Explorer\Approved Extensions\{E5AB1B61-C502-4F36-97A4-0A2FEFE67807}Software\Microsoft\Internet Explorer\DOMStorage\searchandknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\searchknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\searchmoreknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\searchquickknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\searchtooknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\DOMStorage\searchwebknow-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchandknow-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchknow-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchtooknow-a.akamaihd.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\searchwebknow-a.akamaihd.netSoftware\Microsoft\Internet Explorer\SearchScopes\{fcd9f10e-0daa-405f-bca0-0dd3f37c59d9}SOFTWARE\Microsoft\Tracing\SearchMoreKnowDesktopSearch_RASAPI32SOFTWARE\Microsoft\Tracing\SearchMoreKnowDesktopSearch_RASMANCSSOFTWARE\Microsoft\Tracing\SearchTooKnowDesktopSearch_RASAPI32SOFTWARE\Microsoft\Tracing\SearchTooKnowDesktopSearch_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3beacc4a-b617-4519-bb20-e5970414cbe4}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{73e63875-3642-489c-b934-1c996afd502f}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{cdc9b2b6-5796-4d44-bc7a-2fa644057d7f}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{267900E9-D7C1-4E8E-B09B-23B437693506}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CDC9B2B6-5796-4D44-BC7A-2FA644057D7F}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{267900E9-D7C1-4E8E-B09B-23B437693506}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CDC9B2B6-5796-4D44-BC7A-2FA644057D7F}SOFTWARE\SearchAndKnowSOFTWARE\SearchMoreKnowSOFTWARE\SearchQuickKnowSOFTWARE\SearchTooKnowSOFTWARE\SearchWebKnowSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{267900e9-d7c1-4e8e-b09b-23b437693506}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3beacc4a-b617-4519-bb20-e5970414cbe4}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{73e63875-3642-489c-b934-1c996afd502f}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{cdc9b2b6-5796-4d44-bc7a-2fa644057d7f}SOFTWARE\Wow6432Node\SearchAndKnowSOFTWARE\Wow6432Node\SearchKnowSOFTWARE\Wow6432Node\SearchMoreKnowSOFTWARE\Wow6432Node\SearchQuickKnowSOFTWARE\Wow6432Node\SearchTooKnowSOFTWARE\Wow6432Node\SearchWebKnowSYSTEM\ControlSet001\services\Service Mgr SearchKnowSYSTEM\ControlSet001\services\Service Mgr SearchMoreKnowSYSTEM\ControlSet001\services\Service Mgr SearchTooKnowSYSTEM\ControlSet001\Services\Service Mgr SearchWebKnowSYSTEM\ControlSet001\services\Update Mgr SearchKnowSYSTEM\ControlSet001\services\Update Mgr SearchMoreKnowSYSTEM\ControlSet001\services\Update Mgr SearchTooKnowSYSTEM\ControlSet001\Services\Update Mgr SearchWebKnowSYSTEM\ControlSet002\services\Service Mgr SearchKnowSYSTEM\ControlSet002\services\Service Mgr SearchMoreKnowSYSTEM\ControlSet002\services\Service Mgr SearchTooKnowSYSTEM\ControlSet002\Services\Service Mgr SearchWebKnowSYSTEM\ControlSet002\services\Update Mgr SearchKnowSYSTEM\ControlSet002\services\Update Mgr SearchMoreKnowSYSTEM\ControlSet002\services\Update Mgr SearchTooKnowSYSTEM\ControlSet002\Services\Update Mgr SearchWebKnowSYSTEM\CurrentControlSet\services\Service Mgr SearchKnowSYSTEM\CurrentControlSet\services\Service Mgr SearchMoreKnowSYSTEM\CurrentControlSet\services\Service Mgr SearchTooKnowSYSTEM\CurrentControlSet\Services\Service Mgr SearchWebKnowSYSTEM\CurrentControlSet\services\Update Mgr SearchKnowSYSTEM\CurrentControlSet\services\Update Mgr SearchMoreKnowSYSTEM\CurrentControlSet\services\Update Mgr SearchTooKnowSYSTEM\CurrentControlSet\Services\Update Mgr SearchWebKnowHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Search and KnowSearch KnowSearch Quick KnowSearch Too KnowSearch Web KnowSearchMoreKnow

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\SearchMoreKnow%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Search Too Know%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\SearchMoreKnow%ALLUSERSPROFILE%\Search Too Know%ALLUSERSPROFILE%\SearchMoreKnow%PROGRAMFILES%\Common Files\9a4b8b26-f4e0-4529-a5b4-93ec828f7e42%PROGRAMFILES%\Search Know%PROGRAMFILES%\Search Too Know%PROGRAMFILES%\Search Web Know%PROGRAMFILES%\SearchMoreKnow%PROGRAMFILES(x86)%\Common Files\9a4b8b26-f4e0-4529-a5b4-93ec828f7e42%PROGRAMFILES(x86)%\Search Know%PROGRAMFILES(x86)%\Search Quick Know%PROGRAMFILES(x86)%\Search Too Know%PROGRAMFILES(x86)%\Search Web Know%PROGRAMFILES(x86)%\Search and Know%PROGRAMFILES(x86)%\SearchMoreKnow%TEMP%\Search Know%TEMP%\Search Quick Know%TEMP%\Search Web Know%temp%\Search Too Know%temp%\SearchMoreKnow
The following URL's were detected:
searchandknow.comsearchitknow.comsearchmorenow.comsearchquicknow.comsearchtooknow.comsearchwebknow.com{d720d64d-c71a-4316-b59e-8a41b860178f}
Loading...