Home Malware Programs Browser Hijackers Blekko

Blekko

Posted: December 28, 2012

Threat Metric

Ranking: 6,732
Threat Level: 5/10
Infected PCs: 116,527
First Seen: December 28, 2012
Last Seen: March 10, 2025
OS(es) Affected: Windows

The Blekko search engine distinguishes itself by prioritizing spam-free search results. As a community-based search engine, it employs both a dedicated crawler and a human review process to combat spam, providing users with reliable search outcomes.

Addressing Redirect Issues

Despite its commitment to spam-free results, some users encounter unwanted redirects to Blekko.com. This issue is often linked to the installation of the Blekko toolbar, a browser plug-in that modifies settings without user consent, changing the homepage and default search engine to Blekko.com.

Source of Redirect Problems

Users who find themselves unintentionally redirected to Blekko.com may have unknowingly installed the toolbar, often bundled with free software downloaded from the Internet. It's crucial for users to be vigilant during software installations, as free downloads can include additional browser extensions, such as the Blekko toolbar.

Understanding Blekko Toolbar Features

While the Blekko toolbar itself is not inherently malicious, it offers quick launch buttons for social networks and weather forecasts. However, the toolbar is commonly bundled with the Anti-phishing Domain Advisor, a browser add-on known for displaying unwanted ads and coupon offers.

A common strategy for monetization involves bundling free software with Internet browser add-ons, potentially leading to the involuntary installation of the Blekko toolbar. To avoid such instances, users should exercise caution and attentiveness during the download and installation of free software.

Despite concerns about redirects, it's essential to recognize that Blekko is a legitimate search engine, offering safe and credible results for daily Internet searches. Users who willingly install the Blekko toolbar and are aware of redirects need not take further action.

Removal for Unwanted Installations like Blekko

For users who have inadvertently installed the Blekko toolbar and are bothered by redirects to Blekko.com, a removal guide is available to help eliminate the issue. Taking proactive steps can restore the desired browser settings and enhance the overall online experience.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\4_ OOPS Keys_2017\AdwCleaner\Quarantine\C\Program Files (x86)\blekkotb\blekkoDx.dll.vir File name: blekkoDx.dll.vir
Size: 86.69 KB (86696 bytes)
MD5: 1f3b9565fa09e0cc5b64e7e05fbb7f54
Detection count: 2,066
Mime Type: unknown/vir
Path: C:\4_ OOPS Keys_2017\AdwCleaner\Quarantine\C\Program Files (x86)\blekkotb\blekkoDx.dll.vir
Group: Malware file
Last Updated: November 8, 2022
%PROGRAMFILES(x86)%\photopostb\dtUser.exe File name: dtUser.exe
Size: 262.61 KB (262616 bytes)
MD5: 3a5ff24d2dcb7f82563f23f315e2bae7
Detection count: 1,246
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\photopostb\dtUser.exe
Group: Malware file
Last Updated: October 9, 2024
C:\System Volume Information\_restore{F9BD30A1-87FC-46E7-93E6-304EDEDE8F93}\RP1744\A0417391.dll File name: A0417391.dll
Size: 85.28 KB (85288 bytes)
MD5: 6ba5208545ba69e1bc1afc4bf0098c6d
Detection count: 855
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\System Volume Information\_restore{F9BD30A1-87FC-46E7-93E6-304EDEDE8F93}\RP1744\A0417391.dll
Group: Malware file
Last Updated: February 13, 2022
%PROGRAMFILES%\blekkotb\auxi\blekkoAu.dll File name: blekkoAu.dll
Size: 262.31 KB (262312 bytes)
MD5: b6e0572d5bc0b7757db384ebdd448a51
Detection count: 218
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\blekkotb\auxi
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\blekkotb\blekkoDx.dll File name: blekkoDx.dll
Size: 86.69 KB (86696 bytes)
MD5: a4653301b7edced1e62a0052b1cc2634
Detection count: 215
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\blekkotb
Group: Malware file
Last Updated: June 13, 2014
C:\Program Files (x86)\blekkotb_005\blekkotb_005X.dll File name: blekkotb_005X.dll
Size: 88.26 KB (88264 bytes)
MD5: 43cc4ac34a3fd6cd83d415c82cf26562
Detection count: 171
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Program Files (x86)\blekkotb_005\blekkotb_005X.dll
Group: Malware file
Last Updated: March 12, 2022
%PROGRAMFILES%\blekkotb_soc\blekkotb_019X.dll File name: blekkotb_019X.dll
Size: 88.26 KB (88264 bytes)
MD5: a2680d5d4b162b6686be28752516a31a
Detection count: 122
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\blekkotb_soc
Group: Malware file
Last Updated: June 13, 2014
%LOCALAPPDATA%\blekkotb\Apps\wvbsdyol.dll File name: wvbsdyol.dll
Size: 390.14 KB (390144 bytes)
MD5: d2d78dd8b91403ef74c3721883075199
Detection count: 52
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\blekkotb\Apps
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\blekkotb_014\blekkotb_014X.dll File name: blekkotb_014X.dll
Size: 85.28 KB (85288 bytes)
MD5: bb9a7e6329906080016a7b3a840da8d1
Detection count: 49
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\blekkotb_014
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\blekkotb_017\blekkotb_017X.dll File name: blekkotb_017X.dll
Size: 85.28 KB (85288 bytes)
MD5: af6a1ea26ef2851ce13cc5ad92fddc4b
Detection count: 40
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\blekkotb_017
Group: Malware file
Last Updated: June 13, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\blekkotbSOFTWARE\Microsoft\Windows\CurrentVersion\Run\blekko Anti-PhishingSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\blekko Anti-PhishingHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}blekko Anti-Phishing

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\blekko Anti-Phishing%ALLUSERSPROFILE%\Application Data\blekko toolbars%ALLUSERSPROFILE%\blekko Anti-Phishing%ALLUSERSPROFILE%\blekko toolbars%LOCALAPPDATA%\blekkotb_017%PROGRAMFILES%\blekko%PROGRAMFILES%\blekkotb_017%PROGRAMFILES(x86)%\blekko%PROGRAMFILES(x86)%\blekkotb_017%UserProfile%\AppData\LocalLow\blekkotb_017

Related Posts

Loading...