SearchSettings.exe
Widgi Toolbar by Spigot (Signed)
Version: | 4, 6, 0, 1 |
MD5: | 00ed8dbe21dca52c62ae769d7e5d78b9 |
SHA1: | 046466a12f235e840528b962f3e1ef5eab4d7466 |
SHA256: | 27d72aa201bfc78c43112baf9b3f95d32b84a05992ea377a055141368807b366 |
Warning 4 antivirus scanners has detected malware.
What is SearchSettings.exe?
The Widgi Search Settings Toolbar is a toolbar built on the spigot platform. The toolbar is usually installed together with other software. Typically, PC owner is not careful enough and leave some checkboxes unchecked. That is how one of such Widgi toolbars land on their browser. The Widgi Toolbar displays advertisements, or change your browsers default search provider.
About SearchSettings.exe (from Spigot)
“The Spigot Search Settings is an application which is part of the Spigot Toolbar. Spigot searchsettings.exe's purpose is to check periodically your default search engine and restore it to Yahoo in cas”
Details
File name: | SearchSettings.exe |
Publisher: | Spigot, Inc. |
Product name: | Widgi Toolbar |
Description: | Search Settings |
Typical file path: | C:\Program Files\common files\spigot\search settings\searchsettings.exe |
File version: | 4, 6, 0, 1 |
Size: | 522.34 KB (534,880 bytes) |
Certificate |
Issued to: | Spigot |
Authority (CA): | VeriSign |
Effective date: | Monday, March 28, 2011 |
Expiration date: | Wednesday, March 28, 2012 |
Digital DNA |
Entropy: | 4.805097 |
File packed: | No |
.NET CLR: | No |
More details
Behaviors
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'SearchSettings' → "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
Malware detections
Based on 40+ industry antivirus scanners, 4 of them detected the following malware.
Antivirus engine | Engine version | Detection |
Agnitum |
5.5.1.3 |
Riskware.Adware!9zyjv5VfDxA |
Emsisoft Anti-Malware |
None |
Adware.Win32.Toolbar.Dealio.AMN (A) |
ESET NOD32 |
7.7904 |
a variant of Win32/Toolbar.Widgi |
Trend Micro HouseCall |
9.700.0.1001 |
TROJ_GEN.F47V0808 |
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.03003663% | |
Kernel CPU: | 0.01338874% | |
User CPU: | 0.01664789% | |
Kernel CPU time: | 658 ms/min | |
User CPU time: | 10 ms/min | |
Context switches: | 3/sec | |
Memory |
Private memory: | 3.39 MB | |
Private (maximum): | 1.29 MB | |
Private (minimum): | 433.33 KB | |
Non-paged memory: | 3.39 MB | |
Virtual memory: | 44.3 MB | |
Virtual memory (peak): | 45.47 MB | |
Working set: | 210.67 KB | |
Working set (peak): | 6.9 MB | |
Page faults: | 51,074/min | |
I/O |
I/O read transfer: | 219 KB/sec | |
I/O read operations: | 38/sec | |
I/O write transfer: | 98.81 KB/sec | |
I/O write operations: | 3/sec | |
I/O other transfer: | 6.91 KB/sec | |
I/O other operations: | 171/sec | |
Resource allocations |
Threads: | 2 | |
Handles: | 137 | |
GUI GDI count: | 470 | |
GUI USER count: | 239 | |
Process properties
Platform: | 32-bit |
Command lines: |
- "C:\Program Files\common files\spigot\search settings\searchsettings.exe" dfromkit
- "C:\Program Files\common files\spigot\search settings\searchsettings.exe"
|
Owner: | User |
Parent process: | Explorer.EXE (Windows Explorer by Microsoft) |
Distribution by Windows OS
OS version | distribution |
Windows XP Professional |
100.00% |
|