Adware

Adware.SearchHijacker information

Malware Removal

The Adware.SearchHijacker is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware.SearchHijacker virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Adware.SearchHijacker?


File Info:

name: 47B03D418DE2B0A27D3F.mlw
path: /opt/CAPEv2/storage/binaries/9d2b06ea981e4d865c380d6bebb805fbd6902f5250462f1acc4c752af99f6b7b
crc32: 8DD26D25
md5: 47b03d418de2b0a27d3fe65658cf5dd8
sha1: 8c572eea01d9f515358c9abe68ed9afa066bbc09
sha256: 9d2b06ea981e4d865c380d6bebb805fbd6902f5250462f1acc4c752af99f6b7b
sha512: bc1d1a086cd5ff06f9aea40411e67417524793ef9c733427a5042c380c696bb94253f026faa580877bbe5b3ab3d964c193ad8a37d85ab3352fb2c547fea7c4e9
ssdeep: 384:Pe/aOaOhwcyBorvh5SoPux8H4nrA/ae/x4:PEBa0Blr55HErqxZ4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FDE2F70353E5CC15D1A65A342EAE8BED1573B91A7FD7ED0A32C136580822FA28E27753
sha3_384: 83f1eee5d160b406f919e76a11cca1e86be99832ec1dec1958869c00fef017d37ce0f8ba4fe90b080e55d9c692134fa2
ep_bytes: 680c244000e8f0ffffff000000000000
timestamp: 2022-01-08 08:01:39

Version Info:

Translation: 0x0409 0x04b0
CompanyName: ADD
ProductName: cSearch
FileVersion: 1.00
ProductVersion: 1.00
InternalName: scsearch
OriginalFilename: scsearch.exe

Adware.SearchHijacker also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanGen:Variant.Lazy.105515
FireEyeGeneric.mg.47b03d418de2b0a2
ALYacGen:Variant.Lazy.105515
CylanceUnsafe
ZillyaTrojan.VBAGen.Win32.4
K7AntiVirusP2PWorm ( 0058d38a1 )
BitDefenderGen:Variant.Lazy.105515
K7GWP2PWorm ( 0058d38a1 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/VB_AGen.Q
APEXMalicious
AvastWin32:Trojan-gen
KasperskyVHO:Trojan.Win32.Convagent.gen
RisingTrojan.VB_AGen!8.13096 (TFE:dGZlOgWbnhIu6699fg)
EmsisoftGen:Variant.Lazy.105515 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Redcap.juowm
Antiy-AVLTrojan/Generic.ASMalwS.35179DB
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGen:Variant.Lazy.105515
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R467212
McAfeeGenericRXAA-AA!47B03D418DE2
VBA32Trojan.Convagent
MalwarebytesAdware.SearchHijacker
PandaTrj/GdSda.A
YandexTrojan.VB_AGen!4S6A+bSSCxo
MAXmalware (ai score=84)
eGambitUnsafe.AI_Score_77%
FortinetW32/VB_AGen.Q!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.a01d9f
MaxSecureTrojan.Malware.109653022.susgen

How to remove Adware.SearchHijacker?

Adware.SearchHijacker removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment