Windows Searchqu Toolbar

Windows Searchqu Toolbar

Known Toolbar

by Bandoo Media Inc

What is Windows Searchqu Toolbar?

Windows Searchqu Toolbar is software application developed by Bandoo Media Inc. It is most commonly found on computers running Windows 7 with nearly 67.11% of installations running this operating system. Windows Searchqu Toolbar's installer is typically 21.00 MB in size and installs around 444 files. The most common release is 3.0.0.112200 with 34.87% of all installations currently using this version.

Windows Searchqu Toolbar is most popular in the United States with 17.92% of installations residing in this country.

When using a computer that is connected to the internet, Windows Searchqu Toolbar is known to create 1 firewall exception to allow inbound and outbound connectivity.

About Windows Searchqu Toolbar?

The Windows Searchqu Toolbar by Bandoo Media is a Browser Helper Object (BHO) that is installed in Internet Explorer. It has been known to redirect legitimate search queries and results.

Multiple virus scanners have detected malware in Windows Searchqu Toolbar.

DataMngrHlpFF6.dll (MD5: 607ae0dd7eae6e533d371052a5fcf85d) has been flagged by 4 scanners:
Scanner Software Result
Baidu-International Trojan.Win32.Toolbar.AReP
Clam AntiVirus Win.Trojan.Ramnit-398
ESET-NOD32 probably a variant of Win32/Toolbar.SearchSuite.D
AVG Bandoomed.149
DataMngrHlpFF5.dll (MD5: dfd237fbbdd6aba1759bec9a5ea06eba) has been flagged by 2 scanners:
Scanner Software Result
Baidu-International Trojan.Win32.Toolbar.APz
ESET-NOD32 probably a variant of Win32/Toolbar.SearchSuite.D
BrowserConnection.dll (MD5: 3223aeee8666585db01709985314ef69) has been flagged by 16 scanners:
Scanner Software Result
Antiy-AVL Backdoor/Win32.Rbot
Dr.Web Adware.Searcher.2358
K7 AntiVirus Adware
K7GW Adware
NANO AntiVirus Trojan.Win32.Searcher.bskiwt
TrendMicro-HouseCall TROJ_GEN.F47V0314
Trend Micro ADW_SEARCHSUITE
Emsisoft Anti-Malware Riskware.Win32.Toolbar.SearchSuite.AMN (A)
ESET-NOD32 Win32/Toolbar.SearchSuite
Agnitum Outpost PUA.Toolbar.Visicom!
Symantec PUA.Gen.5
Baidu-International Trojan.Win32.Toolbar.AReP
Clam AntiVirus Win.Trojan.Ramnit-398
AVG Bandoomed.149
AhnLab-V3 Win-Trojan/Monder.K.89464
Kingsoft AntiVirus Win32.Troj.Monder.ct.(kcloud)
IEBHO.dll (MD5: 683f04dcc2f8a299732c1e532b4f1c33) has been flagged by 14 scanners:
Scanner Software Result
Emsisoft Anti-Malware Riskware.Win32.Toolbar.SearchSuite.AMN
ESET-NOD32 a variant of Win32/Toolbar.SearchSuite
K7 AntiVirus Adware
K7GW Adware
Antiy-AVL Backdoor/Win32.Rbot
Dr.Web Adware.Searcher.2358
NANO AntiVirus Trojan.Win32.Searcher.bskiwt
TrendMicro-HouseCall TROJ_GEN.F47V0314
Trend Micro ADW_SEARCHSUITE
Agnitum Outpost PUA.Toolbar.Visicom!
Symantec PUA.Gen.5
Baidu-International Trojan.Win32.Toolbar.AReP
Clam AntiVirus Win.Trojan.Ramnit-398
AVG Bandoomed.149
datamngrUI.exe (MD5: 2ed9c81918815af05d81159955fc3643) has been flagged by 11 scanners:
Scanner Software Result
Dr.Web Adware.Toolbar.9
Emsisoft Anti-Malware Riskware.Win32.Toolbar.SearchSuite.AMN (A)
ESET-NOD32 Win32/Toolbar.SearchSuite
TrendMicro-HouseCall TROJ_GEN.F47V0219
Agnitum Outpost PUA.Toolbar.Visicom!
Symantec PUA.Gen.5
Baidu-International Trojan.Win32.Toolbar.AReP
Clam AntiVirus Win.Trojan.Ramnit-398
AVG Bandoomed.149
K7 AntiVirus Adware
K7GW Adware

Software Behaviors

Firewall:
  • dtUser.exe is added as a firewall exception for 'C:\Program Files\Windows Searchqu Toolbar\Datamngr\ToolBar\dtUser.exe'.

Software Details

URL:
https://www.searchqu.com
Support:
Installation path:
C:\Program Files\windows searchqu toolbar
Uninstaller:
C:\Program Files\Windows Searchqu Toolbar\uninstall.exe
Size:
21.00 MB
Language:
English

Windows Searchqu Toolbar Executable Details

Primary executable:
del_IEBHO_39.dll
Name:
Windows Searchqu Toolbar
Path:
C:\Program Files\windows searchqu toolbar\del_IEBHO_39.dll
MD5:
683f04dcc2f8a299732c1e532b4f1c33
SHA-1:
SHA-256:
Files installed by Windows Searchqu Toolbar
File Type Filename MD5
DLL
e079cc4750244e683fb2886af15371ed
DLL
3223aeee8666585db01709985314ef69
DLL
IEBHO.dll
Malware
683f04dcc2f8a299732c1e532b4f1c33
EXE
2ed9c81918815af05d81159955fc3643
DLL
16716a54940ff7bb20f940f125676ae6
EXE
fef99c868a7f07bba48b4977fcd81db2
DLL
8a8274dffe8fa5b1268a0c0d76a14954
DLL
d4e2a1cb709c9b83539360cb1d856c07
DLL
046f48211b2751d2658b9db5d58c867c
DLL
89041f2af9d2df0a050814bfcc85ce66