Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

1.0.0.36 25.00%
.0.0.33 50.00%
.0.0.31 25.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
AddAce, RegCreateKeyExA, RegQueryValueA, OpenProcessToken, GetTokenInformation, AllocateAndInitializeSid, EqualSid, LookupAccountSidA, GetUserNameA, LookupAccountNameA, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, FreeSid, GetLengthSid, AddAccessDeniedAce, InitializeAcl, RegOpenKeyExA, IsValidAcl, GetSecurityDescriptorDacl, RegGetKeySecurity, RegSetKeySecurity, GetAclInformation, GetAce, RegDeleteKeyA, RegDeleteValueA, RegQueryInfoKeyA, RegEnumValueA, RegEnumKeyA, RegQueryValueExA, RegOpenKeyA, RegSetValueExA, RegCreateKeyA, RegCloseKey, RegNotifyChangeKeyValue
comdlg32.dll
GetFileTitleA
gdi32.dll
GetTextExtentPoint32A, GetRgnBox, GetBkColor, GetTextColor, GetMapMode, CreateRectRgnIndirect, CreateCompatibleBitmap, CreateCompatibleDC, CreatePatternBrush, DeleteDC, ExtSelectClipRgn, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, Escape, CreatePen, GetStockObject, SetViewportExtEx, OffsetViewportOrgEx, SetTextColor, CreateFontIndirectA, DeleteObject, GetObjectA, ExtTextOutA, TextOutA, RectVisible, PtVisible, GetPixel, BitBlt, GetWindowExtEx, GetViewportExtEx, MoveToEx, LineTo, GetClipBox, SetMapMode, SetBkMode, SetBkColor, RestoreDC, SaveDC, CreateBitmap, GetDeviceCaps, SelectObject, CreateSolidBrush, SetViewportOrgEx
kernel32.dll
DllMain
ole32.dll
CoGetClassObject, CoTaskMemAlloc, OleIsCurrentClipboard, StgOpenStorageOnILockBytes, CoTaskMemFree, CLSIDFromString, CoCreateGuid, StringFromGUID2, OleFlushClipboard, CoRegisterMessageFilter, StgCreateDocfileOnILockBytes, CreateILockBytesOnHGlobal, CLSIDFromProgID, OleUninitialize, CoFreeUnusedLibraries, OleInitialize, CoRevokeClassObject
psapi.dll
GetModuleFileNameExA
sensapi.dll
IsNetworkAlive
shell32.dll
Shell_NotifyIconA, SHGetSpecialFolderPathA, DragFinish, DragQueryFileA, ShellExecuteExA
shlwapi.dll
SHCopyKeyA, PathFileExistsA, PathFindExtensionA, PathFindFileNameA, PathStripToRootA, PathFileExistsW, PathIsUNCA
user32.dll
UnregisterClassA, GetSysColorBrush, CreateDialogIndirectParamA, GetNextDlgTabItem, EndDialog, UnpackDDElParam, ReuseDDElParam, LoadMenuA, DestroyMenu, LoadAcceleratorsA, InvalidateRect, InsertMenuItemA, CreatePopupMenu, SetRectEmpty, BringWindowToTop, SetMenu, TranslateAcceleratorA, RegisterWindowMessageA, WinHelpA, IsChild, GetCapture, GetClassLongA, GetClassNameA, SetActiveWindow, BeginDeferWindowPos, EndDeferWindowPos, GetTopWindow, DestroyWindow, GetMessageTime, GetMessagePos, MapWindowPoints, TrackPopupMenu, GetMenu, GetMenuItemInfoA, GetClassInfoExA, RegisterClassA, AdjustWindowRectEx, EqualRect, CopyRect, DefWindowProcA, OffsetRect, IntersectRect, SystemParametersInfoA, GetWindowPlacement, SetWindowPos, SetFocus, ShowWindow, MoveWindow, GetDlgCtrlID, IsDialogMessageA, SendDlgItemMessageA, UnhookWindowsHookEx, GetLastActivePopup, IsWindowEnabled, MessageBoxA, ShowOwnedPopups, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, ClientToScreen, ScreenToClient, GrayStringA, TabbedTextOutA, CreateWindowExA, GetClientRect, ReleaseCapture, SetCapture, SetCursor, FillRect, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapA, GetFocus, ModifyMenuA, EnableMenuItem, CheckMenuItem, SetWindowsHookExA, CallNextHookEx, GetMessageA, GetActiveWindow, IsWindowVisible, GetKeyState, GetCursorPos, ValidateRect, GetMenuState, GetMenuItemID, GetMenuItemCount, GetSubMenu, wvsprintfA, CharNextA, wsprintfA, CharUpperA, GetClassInfoA, KillTimer, SetTimer, PtInRect, EnableWindow, IsRectEmpty, MessageBeep, GetNextDlgGroupItem, RegisterClipboardFormatA, SetWindowContextHelpId, DrawTextExA, DestroyIcon, MapDialogRect, InvalidateRgn, SetRect, CopyAcceleratorTableA, SetWindowTextA, LoadCursorA, GetParent, GetWindowLongA, SetPropA, SetWindowLongA, SendMessageA, GetDlgItem, GetPropA, CallWindowProcA, RemovePropA, MsgWaitForMultipleObjects, PeekMessageA, TranslateMessage, DispatchMessageA, PostThreadMessageA, IsWindow, GetWindowThreadProcessId, PostQuitMessage, GetDC, GetDesktopWindow, DrawTextA, UpdateWindow, SetForegroundWindow, GetWindowRect, GetSystemMetrics, GetForegroundWindow, FindWindowA, GetWindowInfo, GetWindowModuleFileNameA, GetWindow, GetWindowTextA, LoadIconA, IsIconic, DrawIcon, PostMessageA, FrameRect, InflateRect, GetSysColor, DeferWindowPos
version.dll
GetFileVersionInfoA, VerQueryValueA, GetFileVersionInfoSizeA
wininet.dll
InternetCrackUrlA
winspool.drv
ClosePrinter, DocumentPropertiesA, OpenPrinterA

SearchEngineProtection.exe

Search Engine Protection by Oberon Media (Signed)

Remove SearchEngineProtection.exe
Version:   1.0.0.36
MD5:   373d38e5cf9217dcf116254d340fbb05
SHA1:   9e0e9c05b3e97b1440500a197e8a2ca3e933eb37
SHA256:   c438cf795143501fbc050b549468ee3d056c41f5649a77b7dd110b51a96f1f07

Overview

searchengineprotection.exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). This is typically installed with the program GamesBar 2.0.1.82 published by Oberon Media, Inc.. The file is digitally signed by Oberon Media which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:searchengineprotection.exe
Publisher:Oberon Media
Product name:Search Engine Protection
Description:SearchEngineProtection.exe
Typical file path:C:\Program Files\gamesbar\update\searchengineprotection.exe
File version:1.0.0.36
Size:577.39 KB (591,248 bytes)
Certificate
Issued to:Oberon Media
Authority (CA):VeriSign
Effective date:Tuesday, June 19, 2012
Expiration date:Friday, June 21, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Oberon Media, Inc.
24% remove
GamesBar is a centralized utility for managing and launching Oberon video games. The GamesBar is an add-on to Internet browsers that allows users to quickly and easily access games. It works in conjunction with the games sites Pogo and I-Play. Users can access many types of games, including puzzle, strategy, arcade, card and time-management games. If you do not utilize Oberon games you can safely uninstall this program.

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SearchEngineProtection' → C:\Program Files\GamesBar\update\SearchEngineProtection.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00047182%
0.028634%
Kernel CPU:0.00036876%
0.013761%
User CPU:0.00010306%
0.014873%
Kernel CPU time:391 ms/min
100,923,805ms/min
CPU cycles:9,023/sec
17,470,203/sec
Memory
Private memory:1.72 MB
21.59 MB
Private (maximum):1.25 MB
Private (minimum):376 KB
Non-paged memory:1.72 MB
21.59 MB
Virtual memory:77.86 MB
140.96 MB
Virtual memory (peak):78.6 MB
169.69 MB
Working set:380 KB
18.61 MB
Working set (peak):5.13 MB
37.95 MB
Page faults:40,276/min
2,039/min
I/O
I/O read transfer:35 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:7 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:3
12
Handles:124
600
GUI GDI count:20
103
GUI GDI peak:23
142
GUI USER count:10
49
GUI USER peak:10
71

BehaviorsProcess properties

Integrety level:Medium
Platform:64-bit
Command line:"C:\Program Files\gamesbar\searchengineprotection.exe"
Owner:User
Parent process:Explorer.EXE (Windows Explorer by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 41.67%
Windows 7 Professional 16.67%
Microsoft Windows XP 16.67%
Windows 7 Ultimate N 8.33%
Windows Vista Home Premium 8.33%
Windows 7 Ultimate 8.33%

Distribution by countryDistribution by country

United States installs about 58.33% of Search Engine Protection.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Samsung 66.67%
Acer 33.33%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE