Threat Database Browser Hijackers Search Module Plus

Search Module Plus

By GoldSparrow in Browser Hijackers

Threat Scorecard

Ranking: 4,877
Threat Level: 50 % (Medium)
Infected Computers: 18,954
First Seen: August 7, 2014
Last Seen: September 10, 2023
OS(es) Affected: Windows

Security experts consider the Search Module Plus browser tool by Gobzoo Ltd. as a Potentially Unwanted Program (PUP) with adware capabilities. The Search Module Plus software is distributed among computer users by bundling the app with free software installers because most users prefer to install software via the 'Express' or 'Typical' option. The Search Module Plus program might change your home page, default search provider, and DNS settings as well as install an add-on and a Browser Helper Object. Additionally, the Search Module Plus adware may insert a registry key in Windows to auto-start with your OS at every system boot-up. Security experts add that Search Module Plus may launch a background service that would enable it to display ads, banners, and pop-ups on all web pages the user visits. You might want to keep in mind that the Search Module Plus program functions as a monetization engine for its developers and it may not provide you with safe online content. Many computer users might want to consider removing all files associated with Search Module Plus by using a trustworthy anti-malware utility.

SpyHunter Detects & Remove Search Module Plus

File System Details

Search Module Plus may create the following file(s):
# File Name MD5 Detections
1. dblaunch.exe bf23aa6b4c0093a734d0afc526c84287 97
2. DeskBar.exe.vir 9252cc419c84f0ec639b4da6e21d6e61 69
3. trzC7A4.tmp b13bccaa784f8ca6cb654b7aaab91352 25
4. dblaunch.exe 45c198412cbfc88313f24feb307b532e 24
5. deskbar.exe 3b6917ecc9518e1e34fe4e5fe35c74a2 23
6. DeskBar.exe f3667f2b9db9e673aa7533808b2187f6 23
7. DeskBar.exe b172e347f295317755b9309797433a64 15
8. DeskBar.exe 0eb3915bfcd3a5ba0e66c2519cbf731d 14
9. dblaunch.exe 4b5a8cb69f786ec4d53e2ebab44b694e 13
10. DeskBar.exe 8ffcb304a1a0fc62034c89ba7ad88be1 8
11. dblaunch.exe cae918714403e99d5549b9e745a3fce3 7
12. dblaunch.exe 812a74d3e9bf19e6cb6d1e1b389c2a52 6
13. DeskBar.exe f5397e0342f62bf551980a5fb0500e91 3
14. dblaunch.exe a1b62cabfd379959a281962b898b5edf 3
15. DeskBar.exe 1488316e4799e328c10d5f171eda26cf 2
16. DeskBar.exe 5aafe7b0b311bd0d00806214d67f8555 2
17. dblaunch.exe fbf7c635836745735760fb14eb1ce15f 1
18. dblaunch.exe bbc3925240916f728d10e30e6bb26931 1
19. DeskBar.exe 23baeaf640efe2d30261b1e216173d95 1
20. DeskBar.exe 95da60a37c6c006005ae9b068246685f 1
21. deskbar.exe ca2826fe184571b1c1b8de2ffcce0079 1
22. DeskBar.exe 1f2fff7f2a765df25b5c4afd618383d6 1
23. dblaunch.exe 69b156706e252979747ed3f450a7b7e8 1
24. DeskBar.exe 52d4ad0d0ad88d8fa0ee1add40e11a26 1
25. DeskBar.exe ebb428dbe52fd382253804b083bf2bf7 1
26. DeskBar.exe 1a98af6c56f8a9f5dcc60e0a7ce02727 1
27. dblaunch.exe 642492ac8e4c8ffddb6787e2d932d00b 1
28. C:\Program Files\common files\goobzo\gbupdateplus\smu.exe 4235f0a1b73426f6d221e49b8da051ee
More files

Registry Details

Search Module Plus may create the following registry entry or registry entries:
Regexp file mask
%WINDIR%\System32\Tasks\SMW_UpdateTask[RANDOM CHARACTERS]
%WINDIR%\System32\Tasks\SMWUpd
%WINDIR%\Tasks\SMW_UpdateTask[RANDOM CHARACTERS]
Software\DeskBar
Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION\DeskBar.exe
SOFTWARE\Microsoft\Tracing\DeskBar_RASAPI32
SOFTWARE\Microsoft\Tracing\DeskBar_RASMANCS
SOFTWARE\SearchModule\Info
SOFTWARE\SearchModule\SMUpd
SOFTWARE\SearchModule\Success
SOFTWARE\Wow6432Node\Microsoft\Tracing\DeskBar_RASAPI32
SOFTWARE\Wow6432Node\Microsoft\Tracing\DeskBar_RASMANCS
SOFTWARE\Wow6432Node\SearchModule
Search module
Search Module_is1
{D2E9FE6A-7003-42A0-96F6-5569DFC2A3A8}_is1
{DE6791BD-7EAC-4822-B923-B8D6393C6110}_is1

Directories

Search Module Plus may create the following directory or directories:

%LOCALAPPDATA%\DeskBar
%LOCALAPPDATA%\SearchModule
%UserProfile%\Local Settings\Application Data\DeskBar
%UserProfile%\Local Settings\Application Data\SearchModule

Related Posts

Trending

Most Viewed

Loading...