We received the file TAB_TOOLBARAPP.EXE and detected that TAB_TOOLBARAPP.EXE is not good.
TAB_TOOLBARAPP.EXE is Adware. You should remove the file TAB_TOOLBARAPP.EXE.
Kill the process TAB_TOOLBARAPP.EXE and remove TAB_TOOLBARAPP.EXE from Windows.
Malware Analysis of TAB_TOOLBARAPP.EXE
Full path on a computer: %Program Files%\tab_toolbar\tab_toolbarapp.exe
Detected by UnHackMe:
TAB_TOOLBARAPP.EXE
Default location: %Program Files%\tab_toolbar\tab_toolbarapp.exe
Removal Results: Success
Number of reboot: 1
TAB_TOOLBARAPP.EXE is known as:
Adware.TabBrowing.A (ES), Adware.K.TabToolbar, PUP.TabBrowser, SecurityTool.P
TAB_TOOLBARAPP.EXE hash:
- MD5: 0f474ceec233e7a90a84afdc984046c4
The file is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
How to quickly detect TAB_TOOLBARAPP.EXE presence?
Registry:
Folders:
Files:

- HKLM\Software\Classes\CLSID\{109E6ECE-4AC3-44D1-93B2-DF930C2AF422}\InprocServer32\: “C:\PROGRA~1\TAB_TO~1\TAB_TO~1.DLL”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\tab_toolbarhper: “C:\program files\tab_toolbar\tab_toolbaruphper.exe”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\tab_toolbar: “%Program Files%\tab_toolbar\tab_toolbarapp.exe”

- %Program Files%\tab_toolbar

- %Local Appdata%\Google\Chrome\User Data\Default\Cache\f_000054
- %Local Appdata%\Google\Chrome\User Data\Default\Cache\f_000055
- %Local Appdata%\Google\Chrome\User Data\Default\Web Data-journal
- %Temp%\~DF9BA.tmp
- %Program Files%\tab_toolbar\blockkeyword.dt
- %Program Files%\tab_toolbar\brandkeyword.dt
- %Program Files%\tab_toolbar\breaksite.dt
- %Program Files%\tab_toolbar\breaksitest.dt
- %Program Files%\tab_toolbar\bsvive.dt
- %Program Files%\tab_toolbar\cadoclist.dt
- %Program Files%\tab_toolbar\category.dt
- %Program Files%\tab_toolbar\categorysite.dt
- %Program Files%\tab_toolbar\domainmatch.dt
- %Program Files%\tab_toolbar\dtab.dt
- %Program Files%\tab_toolbar\except.dt
- %Program Files%\tab_toolbar\info.dt
- %Program Files%\tab_toolbar\navilock.dt
- %Program Files%\tab_toolbar\op.dt
- %Program Files%\tab_toolbar\potalsite.dt
- %Program Files%\tab_toolbar\sponserlink.dt
- %Program Files%\tab_toolbar\tab_toolbar.dll
- %Program Files%\tab_toolbar\tab_toolbarapp.exe
- %Program Files%\tab_toolbar\tab_toolbarcb.exe
- %Program Files%\tab_toolbar\tab_toolbardel.exe
- %Program Files%\tab_toolbar\tab_toolbarup.exe
- %Program Files%\tab_toolbar\tab_toolbaruphper.exe
- %Program Files%\tab_toolbar\urlmatchquery.dt
- %Program Files%\tab_toolbar\vd.dat
- %Temp%\tab_toolbarup.exe