We received the file SEARCHGOOSGINST.EXE and detected that SEARCHGOOSGINST.EXE is not good.
SEARCHGOOSGINST.EXE is Adware. You should remove the file SEARCHGOOSGINST.EXE.
Kill the process SEARCHGOOSGINST.EXE and remove SEARCHGOOSGINST.EXE from Windows.
Malware Analysis of SEARCHGOOSGINST.EXE
Full path on a computer: %SysDir%\searchgoosginst.exe
Detected by UnHackMe:
SEARCHGOOSGINST.EXE
Default location: %SysDir%\searchgoosginst.exe
Removal Results: Success
Number of reboot: 1
SEARCHGOOSGINST.EXE is known as:
Adware.K.GSearch, Trojan.Dropper.Agent.voh, TSPY_STARTPAGE_CD100271.RDXN, Win32:Downloader-UHH [PUP], TR.Msidebar.C.245, Trojan.Msidebar.C, PUP.Helper, Adware.Kraddare.JP, a variant of Win32.Msidebar.A
SEARCHGOOSGINST.EXE hash:
- MD5: 0ae6485e50fcfa4d095dd3ef563634d6
How to quickly detect SEARCHGOOSGINST.EXE presence?
Registry:
- HKLM\Software\Classes\CLSID\{F85CACCB-E910-43D2-8C18-75EA1295196F}\InprocServer32\: “%Program Files%\searchgoosg\searchgoosg.dll”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\searchgoosg\DisplayName: “searchgoosg”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\searchgoosg\UninstallString: “%Program Files%\searchgoosg\Uninstall.exe”
Folders:
- %Program Files%\searchgoosg
Files:
- %Program Files%\searchgoosg\searchgoosg.dll
- %Program Files%\searchgoosg\searchgoosgdl.exe
- %Program Files%\searchgoosg\Uninstall.exe
- %Program Files%\searchgoosg\Uninstall.ini
- %SysDir%\INETKO.DLL
- %SysDir%\searchgoosginst.exe
- %SysDir%\utilocean.dll
- %SysDir%\VB6KO.DLL