We received the file SEARCHGOOSGDL.EXE and detected that SEARCHGOOSGDL.EXE is not good.
SEARCHGOOSGDL.EXE is Adware. You should remove the file SEARCHGOOSGDL.EXE.
Kill the process SEARCHGOOSGDL.EXE and remove SEARCHGOOSGDL.EXE from Windows.
Malware Analysis of SEARCHGOOSGDL.EXE
Full path on a computer: %Program Files%\searchgoosg\searchgoosgdl.exe
Detected by UnHackMe:
SEARCHGOOSGDL.EXE
Default location: %Program Files%\searchgoosg\searchgoosgdl.exe
Removal Results: Success
Number of reboot: 1
SEARCHGOOSGDL.EXE is known as:
Adware.K.GSearch, Virus ( ee4ce7900 ), W32.VB-Backdoor-HRS-based.Maxim, Win32:Downloader-UHH [PUP], PUP.Helper, a variant of Win32.Msidebar.B
SEARCHGOOSGDL.EXE hash:
- MD5: d5f4d5234a01928d911ca3e9ab9526db
How to quickly detect SEARCHGOOSGDL.EXE presence?
Registry:
- HKLM\Software\Classes\CLSID\{F85CACCB-E910-43D2-8C18-75EA1295196F}\InprocServer32\: “%Program Files%\searchgoosg\searchgoosg.dll”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\searchgoosg\DisplayName: “searchgoosg”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\searchgoosg\UninstallString: “%Program Files%\searchgoosg\Uninstall.exe”
Folders:
- %Program Files%\searchgoosg
Files:
- %Program Files%\searchgoosg\searchgoosg.dll
- %Program Files%\searchgoosg\searchgoosgdl.exe
- %Program Files%\searchgoosg\Uninstall.exe
- %Program Files%\searchgoosg\Uninstall.ini
- %SysDir%\INETKO.DLL
- %SysDir%\searchgoosginst.exe
- %SysDir%\utilocean.dll
- %SysDir%\VB6KO.DLL