Home Malware Programs Browser Hijackers Cbadenoche.com

Cbadenoche.com

Posted: March 1, 2012

Cbadenoche.com Screenshot 1Cbadenoche.com is a search engine website that pretends to offer Google-fueled search results, but its real capabilities are somewhat more sinister than this. Visits to Cbadenoche.com have a high chance of resulting in browser-based attacks against your PC that may lead to infection, since SpywareRemove.com malware experts have divined that Cbadenoche.com is just a fake search site that's used to promote rogue security products and other PC threats. You should scan your PC after any contact with Cbadenoche.com to guard against drive-by-downloads and other threats that launch themselves automatically and without consent or visible symptoms. Contact with Cbadenoche.com is often caused by browser hijackers that use redirect attacks to promote Cbadenoche.com and similar types of questionable search sites, and these attacks are usually an indication of an ongoing infection on your PC.

Cbadenoche.com – Google-Colored but not Google-Powered

Cbadenoche.com tries to instill a sense of reputability into its appearance by using a template that's similar to one of Google's, and its description even claims to incorporate Google into its search function. However, in spite of these red herrings, Cbadenoche.com's real purpose isn't to be a search engine, but to be a portal by which unwitting visitors can be introduced to fake anti-malware scanners and other PC threats. Security-related issues that SpywareRemove.com malware research team has associated with Cbadenoche.com include:

  • Fake infection alerts that encourage you to download malicious software as a solution to a nonexistent problem.
  • Exposure to additional types of malicious websites that may be engaged in other attacks and crimes against your PC.
  • Drive-by-download attacks that exploit your web browser's security vulnerabilities to install PC threats automatically and without permission. SpywareRemove.com malware experts note that many, but not all of these attacks can be defended against by using strong browser security settings, such as disabling automatic script usage for unusual websites.

Cbadenoche.com's Backup for Attacking Your PC

Cbadenoche.com may be bad enough by itself, but Cbadenoche.com is also supported by browser redirect attacks that originate from installed browser hijackers. Browser hijackers may attack more than one type of browser and are likely to make changes to your operating system's settings that should be reversed by appropriate security software. Attempting to remove Cbadenoche.com-promoting browser hijackers without assistance is generally considered unwise, due to the probability of multiple PC threats being on your computer and the risk of damaging the Registry or other components of Windows.

Besides redirects to Cbadenoche.com from other websites, Cbadenoche.com-affiliated browser hijacker attacks may also include:

  • Locking your homepage to Cbadenoche.com.
  • Censored search results.
  • Blocked access to PC security domains.
  • Theft of personal information, such as account passwords, cached info and cookie-stored data.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%UserProfile\%Start Menu\Programs\Cbadenoche.com File name: %UserProfile\%Start Menu\Programs\Cbadenoche.com
File type: Command, executable file
Mime Type: unknown/com
%UserProfile\%Desktop\Cbadenoche.com.lnk File name: %UserProfile\%Desktop\Cbadenoche.com.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Start Menu\Programs\Cbadenoche.com.lnk File name: %UserProfile%\Start Menu\Programs\Cbadenoche.com.lnk
File type: Shortcut
Mime Type: unknown/lnk

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ".exe"
Loading...