Searchgo
Threat Scorecard
EnigmaSoft Threat Scorecard
EnigmaSoft Threat Scorecards are assessment reports for different malware threats which have been collected and analyzed by our research team. EnigmaSoft Threat Scorecards evaluate and rank threats using several metrics including real-world and potential risk factors, trends, frequency, prevalence, and persistence. EnigmaSoft Threat Scorecards are updated regularly based on our research data and metrics and are useful for a wide range of computer users, from end users seeking solutions to remove malware from their systems to security experts analyzing threats.
EnigmaSoft Threat Scorecards display a variety of useful information, including:
Ranking: The ranking of a particular threat in EnigmaSoft’s Threat Database.
Severity Level: The determined severity level of an object, represented numerically, based on our risk modeling process and research, as explained in our Threat Assessment Criteria.
Infected Computers: The number of confirmed and suspected cases of a particular threat detected on infected computers as reported by SpyHunter.
See also Threat Assessment Criteria.
Ranking: | 4,661 |
Threat Level: | 20 % (Normal) |
Infected Computers: | 48,717 |
First Seen: | May 2, 2016 |
Last Seen: | March 29, 2024 |
OS(es) Affected: | Windows |
The Searchgo program is categorized as adware, and it is advised to remove it from computers. The Searchgo program is known to arrive on computers via freeware bundles and fake updates to Adobe Flash and Java. Researchers have seen the Searchgo adware load from
C:\Users\username\AppData\Local\SearchGo\searchgo.exe and C:\Users\username\AppData\Local\DuckGo\DuckGo.exe. PC users affected by the Searchgo (a.k.a. DuckkGo) adware may notice new tasks being registered in the Windows Task Scheduler from C:\Windows\System32\Tasks\SearchGo Task and C:\Windows\System32\Tasks\DuckGo Task.
The Searchgo adware is known to connect to the h[tt]p://robyego[.]ru/searchgo.json URL and the 178.132.6.45 IP address. It is believed that third parties are using Searchgo (DuckGo) to collect non-personally identifiable data, show targeted advertisements, drop persistent tracking cookies to infected computers, and sell identification numbers for the cookies to ad publishers. The Searchgo adware is recorded to inject code into Internet Explorer and change the way the pages are loaded on the screen for the users. The Searchgo adware may show hyperlinked words, video advertisements in floating windows, generate pop-up windows and alter the header of Web pages. The Searchgo adware may load insecure resources on supposedly safe pages, as well as track the user across SSL-encrypted pages. Ad publishers who are working with the Searchgo developers may show targeted promotional materials based on the infected user's recent activity on the Internet. Searchgo may record the user's browsing history, recent downloads, IP address, system type, browser version, software configuration and approximate geographical location. It is recommended to remove the Searchgo (DuckGo) adware using help from a reliable anti-spyware instrument. Av engines may flag files created by the Searchgo adware as:
- ADWARE/Agent.415233
- ADW_SEARCHGO
- AdWare.Searchgo.a
- Adware ( 004e25111 )
- Adware.SearchGo.Win32.1
- Adware.Searcher.2781
- HEUR/QVM10.1.Malware.Gen
- Malware.Generic!PojyymQ5vsM@5 (Thunder)
- Montiera
- PUP/Win32.Searchgo.R195203
- Trojan.LoadMoney.1441
- W32/S-1b731156!Eldorado
- Win32.Adware.Searchgo.Wozw
- not-a-virus:AdWare.Win32.Searchgo.a
Table of Contents
SpyHunter Detects & Remove Searchgo
File System Details
# | File Name | MD5 |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
---|---|---|---|
1. | searchgo.dll | 0f21077acd26b74e219aaa824e7581c4 | 1,500 |
2. | searchgo.exe | 64a8157837d5df49827f232f1295dec2 | 1,411 |
3. | searchgo.exe | e7dc5f07c89cc136b1087636579155a7 | 1,372 |
4. | searchgo0.dll.old | 41aa9ba47db027de7f6d68e0b027fc48 | 947 |
5. | searchgo.exe | 1e572812793e2f7672110617c8eb7c21 | 912 |
6. | searchgo0.dll.old | 59d05c0c9fdef13cab0d5fdde0836901 | 380 |
7. | adv_93.exe | d6fe35e5a40e727f191d96536baf0c1c | 1 |
8. | adv_93.exe | 87e1844260a46d37f2a3d09a8c108314 | 1 |
Registry Details
Directories
Searchgo may create the following directory or directories:
%LOCALAPPDATA%\DuckGo |
%LOCALAPPDATA%\SearchGo |
%USERPROFILE%\AppData\LocalLow\DuckGo |
%USERPROFILE%\AppData\LocalLow\SearchGo |
%UserProfile%\Local Settings\Application Data\DuckGo |
%UserProfile%\Local Settings\Application Data\SearchGo |