Adware

Should I remove “Adware.SearchEngineHijack”?

Malware Removal

The Adware.SearchEngineHijack is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.SearchEngineHijack virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Adware.SearchEngineHijack?


File Info:

name: 5B4B4CAFF2C894E2B33B.mlw
path: /opt/CAPEv2/storage/binaries/dcdc6754e13313fed5c10a1a90a8c0768e7c054b8c20951c7e1c7e7ca31e0c1b
crc32: D0499202
md5: 5b4b4caff2c894e2b33ba5472926fef7
sha1: 5f51c407087e80e51131796fe9b1377081509e63
sha256: dcdc6754e13313fed5c10a1a90a8c0768e7c054b8c20951c7e1c7e7ca31e0c1b
sha512: 92ee022301d4e3d251b384eaa22470edb6e9741d8d58d37d577249f55ea81ebcab1bfc455e1672045609f6673ced05aea28a03a32a8a70d4e1c91cfcb278d888
ssdeep: 12288:btqhFSsiEt5LODS6RcvRtd+sGum6QHArfePms//bV5cOXPMiCSmRZQkE4:bzA5LODZWvT4sGz6QHVN3bcOhfmRqkd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T181C5AE47B741D1B9D932033388DD72F0A1BA7D73A322459B2F686E181EF20A17E25677
sha3_384: dc1e72098ac72746cadfe652bc5b322bcd7edcae5441caa6d7fc24bd355e6b3f99a76772bbfe4695b984154e110989cd
ep_bytes: ff2500204000
timestamp: 2020-11-17 13:01:15

Version Info:

Translation: 0x0000 0x04b0
Comments: Otp
CompanyName:
FileDescription: Otp
FileVersion: 1.0.0.2
InternalName: escentric.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: escentric.exe
ProductName: Otp
ProductVersion: 1.0.0.2
Assembly Version: 1.1.0.3

Adware.SearchEngineHijack also known as:

MicroWorld-eScanTrojan.GenericKD.47494017
FireEyeGeneric.mg.5b4b4caff2c894e2
ALYacTrojan.GenericKD.47494017
K7AntiVirusAdware ( 0056c1b81 )
AlibabaAdWare:Win32/ExtInstaller.71b2c85e
Cybereasonmalicious.7087e8
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Adware.TekhNetvork.C
APEXMalicious
Kasperskynot-a-virus:HEUR:AdWare.Win32.ExtInstaller.gen
BitDefenderTrojan.GenericKD.47494017
AvastWin32:AdwareX-gen [Adw]
TencentWin32.Adware.Extinstaller.Swlf
Ad-AwareTrojan.GenericKD.47494017
SophosGeneric PUA FP (PUA)
McAfee-GW-EditionArtemis!PUP
EmsisoftTrojan.GenericKD.47494017 (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.47494017
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1139935
ViRobotAdware.Searchenginehijack.2718720
MicrosoftTrojan:Win32/Wacatac.A!ml
CynetMalicious (score: 99)
McAfeeArtemis!5B4B4CAFF2C8
MAXmalware (ai score=84)
MalwarebytesAdware.SearchEngineHijack
TrendMicro-HouseCallTROJ_GEN.R002H0CKP21
FortinetAdware/TekhNetvork
BitDefenderThetaGen:NN.ZemsilF.34294.Lo0@amBW9Ql
AVGWin32:AdwareX-gen [Adw]
PandaTrj/GdSda.A

How to remove Adware.SearchEngineHijack?

Adware.SearchEngineHijack removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment