Severity scale:  

Remove (Free Guide) - Virus Removal Instructions

removal by Julie Splinters - - | Type: Browser Hijackers – a browser hijacker that promotes,,, and similar websites hijacker is a PUP that can hijack web browsers such as Chrome, Firefox, Explorer, and modify their major settings, also known as Obituary Search, is marked as a browser hijacker[1] that brings various affiliate weather, news, and family-related pages with itself. If your search engine ever gets hijacked and turned to, do not be surprised to see a promotion of other third-party sources that, according to the developers, might appear very useful to the user. In addition, Obituary Search provides these pages within shortcuts that are attached to the browser bookmark bar so that they could be reached at any moment. However, you might also find other suspicious products that have come together with this potentially unwanted as it is known to bring Hide My Searches ( browser hijacker along its side too.

Name Search
Type Browser hijacker/potentially unwanted program
Promoted content Once your browser gets hijacked, you will supposedly see some shortcuts to affiliate sources on your homepage window. This app aims to promote websites such as news-reading, weather-watching, name-finding, and similar 
Additional product(s) It is known that this browser hijacker gets delivered in bundles with another hijacked named Hide My Searches (also known as
Developer This browser-hijacking product is developed by an affiliate from Polarity Technologies Ltd.
IP address According to research, the domain name of this browser hijacker is linked to the IP address
Main activities The potentially unwanted program hijacks major browser settings such as the default search provider, new tab search, homepage. Also, it might start providing adverts, redirects, and inject tracking cookies into your browsers in order to spy on your online activities
Spreading Browser hijackers are apps that get distributed through bundles of software, they might also come inserted in suspicious hyperlinks/adverts on third-party networks
Preventing Always use the Custom/Advanced configuration which allows tracking all incoming downloads, keep a distance from third-party websites that are unsafe
Identification/removal Use Reimage software to find all suspicious content on your system. Continuously, proceed with automatical or manual removal instructions that are added to the end of this article virus, which is linked to the IP address, is an app released to collect income from gullible people and it truly supports only the developers' needs. It is known that the browser hijacker is provided by an affiliate of Polarity Technologies Ltd. In addition, you will see the PUP itself promoting these kinds of sources once your default search provider gets hijacked:


Obituary Search virus provides some type of small menu on the upper right corner of your browser window. If you click on that spot, you will be encouraged to search for Name Meanings, Family History, and Ancestry via some websites that we have provided in the list below. This is just a way to seem attractive to you and other users.

Besides this, Obituary Search can promote itself by providing fast access to popular communication platforms such as Facebook, Instagram, Twitter, recipe-viewing pages, and various shopping websites. We suggest not to use these services as they cannot be trusted while provided by such a questionable program and developer.

In addition, if see the homepage of, you will be warned that by continuing to use the provided websites and the services, you agree with the cookie activity. According to the Privacy Policy, these components are here just to improve their service quality, however, they truly capture the user's browsing results instead:

When you visit our Services, we may send your computer or mobile device a cookie that uniquely identifies your browser. Cookies that we may use may only be read by the server that placed them there. Our use of cookies is primarily focused on improving the quality of our Services and your use of those Services. By way of example, we use cookies to deliver our Services in your language of choice, to filter results and fulfill other preferences you may have, and to analyze how our users, including you, interact with our Services, such as by tracking user trends and patterns of how people search.

Once the developers of collect information about your browsing sessions such as commonly visited destinations, they are able to bombard your screen with adverts that carry deals supposedly relevant for you. However, avoid clicking on such offers as they might redirect you to somewhere potentially malicious or just simple trick you into spending a big amount of money for a useless program/service. virus - a browser hijacker that modifies the main search engine and aims to provide bogus search results

Continuously, Obituary Search redirects might become a problem too. Developers often bombard the user with annoying redirects willing to take them to affiliate sources that promote some rogue security software, or similar content. However, the worst part of this activity is that it might force you to accidentally land on a malware-filled website.

All these activities provided by Obituary Search combined together might increase the work of your CPU and GPU. Overloading the computer's processors with lots of jobs might lead to overheating and various system issues. You might find yourself struggling to perform even very simple actions on the affected computer. removal is the best option here as you will not only get rid of all unwanted browser changes but also prevent bogus activities from continuing. You can choose a tool such as Reimage to track all suspicious objects on the system. After that, go to the end of the article and opt for the most appropriate elimination technique.

Depending on what type of antimalware software you have been employing, the detection name of Obituary Search might differ. According to Virus Total different antivirus engines find this potentially unwanted program as:[2]

  1. Adware.BrowserIO (Malwarebytes);
  2. Win32:AdwareSig [Adw] (AVG);
  3. Application.Toolbar (A) (Emsisoft);
  4. W32.Adware.Gen (Webroot);
  5. GenericR-PBK!B860CF8C4CB5 (McAfee).

Keep in mind that once your web browser gets hijacked, you will be forced to use the new default search engine. Some browser hijackers provide results via Bing or Yahoo while others use completely unknown providers. Prevent misleading search results from appearing, remove, and use a safe engine instead. browser hijacker

Browser hijacker distribution and prevention tips for all users

Tech experts from[3] encourage all users to put online safety as their top priority while browsing the web. Not only browser hijackers might reach careless users but also advanced malware might approach. However, this time we are talking about browser hijackers and want to inform you about their most famous hiding places.

Usually, potentially unwanted content gets distributed in software packages of free or shared programs. This happens more often for users who choose the Quick or Recommended installation settings. We recommend selecting the Custom or Advanced option and taking full control of your incoming downloads/installations.

In addition, downloading a reliable AV product, if you do not employ one yet, is a good option as it will guard you through all of your online activities and ensure safe browsing. Online sessions, especially while visiting third-party networks might bring bogus content on your computer unexpectedly when you are the least ready for it.

Detailed removal instructions for Obituary Search

If you have been looking for effective ways that will help you to remove safely, you have come to the right destination. In this article, our experts have tried to provide you with some knowledge on what is this browser hijacker capable of and how to prevent its appearance. Now we are looking forward to guiding you throughout the entire removal process and helping to choose the right option.

There are two different techniques that will help you to achieve satisfying results in removal. The first one is known as the automatical movement when you have to employ a reliable tool. This option is better for less-experienced people and those who are running into a lack of time currently. In addition, you can use the below-provided steps to get rid of the cyber threat by putting your own effort.

You can remove virus damage automatically with a help of one of these programs: Reimage, SpyHunter 5Combo Cleaner, Malwarebytes. We recommend these applications because they detect potentially unwanted programs and viruses with all their files and registry entries that are related to them.

do it now!
Reimage (remover) Happiness
Reimage (remover) Happiness
Compatible with Microsoft Windows Supported versions Compatible with OS X Supported versions
What to do if failed?
If you failed to remove virus damage using Reimage, submit a question to our support team and provide as much details as possible.
Reimage is recommended to remove virus damage. Free scanner allows you to check whether your PC is infected or not. If you need to remove malware, you have to purchase the licensed version of Reimage malware removal tool.
Alternative Software
Different security software includes different virus database. If you didn’t succeed in finding malware with Reimage, try running alternative scan with SpyHunter 5.
Alternative Software
Different security software includes different virus database. If you didn’t succeed in finding malware with Reimage, try running alternative scan with Combo Cleaner.

To remove, follow these steps:

Uninstall from Windows systems

Eliminate all suspicious products from your Windows computer system and disable the browser hijacker. Learn how to do it by following these guiding steps.

  1. Click Start Control Panel Programs and Features (if you are Windows XP user, click on Add/Remove Programs). Click 'Start -> Control Panel -> Programs and Features' (if you are 'Windows XP' user, click on 'Add/Remove Programs').
  2. If you are Windows 10 / Windows 8 user, then right-click in the lower left corner of the screen. Once Quick Access Menu shows up, select Control Panel and Uninstall a Program. If you are 'Windows 10 / Windows 8' user, then right-click in the lower left corner of the screen. Once 'Quick Access Menu' shows up, select 'Control Panel' and 'Uninstall a Program'.
  3. Uninstall and related programs
    Here, look for or any other recently installed suspicious programs.
  4. Uninstall them and click OK to save these changes. Right click on each of suspicious entries and select 'Uninstall'
  5. Remove from Windows shortcuts
    Right click on the shortcut of Mozilla Firefox and select Properties. Right click on browsers' icon and select 'Properties'
  6. Go to Shortcut tab and look at the Target field. Delete malicious URL that is related to your virus. Select 'Shortcut' tab and delete '' or other suspicious URL

Repeat steps that are given above with all browsers' shortcuts, including Internet Explorer and Google Chrome. Make sure you check all locations of these shortcuts, including Desktop, Start Menu and taskbar.

Get rid of from Mac OS X system

  1. If you are using OS X, click Go button at the top left of the screen and select Applications. Cick 'Go' and select 'Applications'
  2. Wait until you see Applications folder and look for or any other suspicious programs on it. Now right click on every of such entries and select Move to Trash. Click on every malicious entry and select 'Move to Trash'

Eliminate from Internet Explorer (IE)

  1. Remove dangerous add-ons
    Open Internet Explorer, click on the Gear icon (IE menu) on the top right corner of the browser and choose Manage Add-ons. Click on menu icon and select 'Manage add-ons'
  2. You will see a Manage Add-ons window. Here, look for and other suspicious plugins. Disable these entries by clicking Disable: Right click on each of malicious entries and select 'Disable'
  3. Change your homepage if it was altered by virus:
    Click on the gear icon (menu) on the top right corner of the browser and select Internet Options. Stay in General tab.
  4. Here, remove malicious URL and enter preferable domain name. Click Apply to save changes. Delete malicious URL, enter your desired domain name and click 'Apply' to save changes
  5. Reset Internet Explorer
    Click on the gear icon (menu) again and select Internet options. Go to Advanced tab.
  6. Here, select Reset.
  7. When in the new window, check Delete personal settings and select Reset again to complete removal. Go to 'Advanced' tab and click on 'Reset' button. Now select 'Delete personal settings' and click on 'Reset' button again

Erase from Microsoft Edge

Reset Microsoft Edge settings (Method 1):

  1. Launch Microsoft Edge app and click More (three dots at the top right corner of the screen).
  2. Click Settings to open more options.
  3. Once Settings window shows up, click Choose what to clear button under Clear browsing data option. Go to Settings and select 'Choose what to clear'
  4. Here, select all what you want to remove and click Clear. Select 'Clear' button
  5. Now you should right-click on the Start button (Windows logo). Here, select Task Manager. Open the start menu and select 'Task Manager'
  6. When in Processes tab, search for Microsoft Edge.
  7. Right-click on it and choose Go to details option. If can’t see Go to details option, click More details and repeat previous steps. Right-click 'Microsoft Edge' and select 'Go to details' Select 'More details' if 'Go to details' option fails to show up
  8. When Details tab shows up, find every entry with Microsoft Edge name in it. Right click on each of them and select End Task to end these entries. Find Microsoft Edge entries and select 'End Task'

Resetting Microsoft Edge browser (Method 2):

If Method 1 failed to help you, you need to use an advanced Edge reset method.

  1. Note: you need to backup your data before using this method.
  2. Find this folder on your computer: C:\Users\%username%\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe.
  3. Select every entry which is saved on it and right click with your mouse. Then Delete option. Go to Microsoft Edge folder on your computer, right-click every entry and click 'Delete'
  4. Click the Start button (Windows logo) and type in window power in Search my stuff line.
  5. Right-click the Windows PowerShell entry and choose Run as administrator. Find Windows PowerShell, right-click it and select 'Run as administrator'
  6. Once Administrator: Windows PowerShell window shows up, paste this command line after PS C:\WINDOWS\system32> and press Enter:
    Get-AppXPackage -AllUsers -Name Microsoft.MicrosoftEdge | Foreach {Add-AppxPackage -DisableDevelopmentMode -Register $($_.InstallLocation)\AppXManifest.xml -Verbose}
    Copy and paste a required command and press 'Enter'

Once these steps are finished, should be removed from your Microsoft Edge browser.

Delete from Mozilla Firefox (FF)

Delete all questionable products from Mozilla Firefox and reverse all bogus changes that have been appended by the browser-hijacking app.

  1. Remove dangerous extensions
    Open Mozilla Firefox, click on the menu icon (top right corner) and select Add-ons Extensions. Click on menu icon and select 'Add-ons'
  2. Here, select and other questionable plugins. Click Remove to delete these entries. Select 'Extensions' and look for malicious entries. Click 'Remove' to get rid of each of them
  3. Change your homepage if it was altered by virus:
    Click on the menu (top right corner), choose Options General.
  4. Here, delete malicious URL and enter preferable website or click Restore to default.
  5. Click OK to save these changes. When in 'General' tab, delete malicious URL from 'Home Page' section or click on 'Restore to Default' button. Click 'OK' to save changes
  6. Reset Mozilla Firefox
    Click on the Firefox menu on the top left and click on the question mark. Here, choose Troubleshooting Information. Click on menu icon and then on '?'. Select 'Troubleshooting Information'
  7. Now you will see Reset Firefox to its default state message with Reset Firefox button. Click this button for several times and complete removal. Click on 'Reset Firefox' button for a couple of times

Remove from Google Chrome

Continue with the following steps if you want to release your Google Chrome web browser application from all bogus changes that were added during the hijack.

  1. Delete malicious plugins
    Open Google Chrome, click on the menu icon (top right corner) and select Tools Extensions. Click on menu icon. Select 'Tools' and 'Extensions'
  2. Here, select and other malicious plugins and select trash icon to delete these entries. Look for malicious entries and delete each of them by clicking on the Trash bin icon
  3. Change your homepage and default search engine if it was altered by your virus
    Click on menu icon and choose Settings.
  4. Here, look for the Open a specific page or set of pages under On startup option and click on Set pages. After clicking on menu and 'Settings', select 'Set pages'
  5. Now you should see another window. Here, delete malicious search sites and enter the one that you want to use as your homepage. Click 'X' to remove malicious URLs
  6. Click on menu icon again and choose Settings Manage Search engines under the Search section. When in 'Settings', select 'Manage search engines...'
  7. When in Search Engines..., remove malicious search sites. You should leave only Google or your preferred domain name. Click 'X' to remove malicious URLs
  8. Reset Google Chrome
    Click on menu icon on the top right of your Google Chrome and select Settings.
  9. Scroll down to the end of the page and click on Reset browser settings. When in 'Settings', scroll down to 'Reset browser settings' button and click on it
  10. Click Reset to confirm this action and complete removal. Click on 'Reset' button to complete your removal

Uninstall from Safari

  1. Remove dangerous extensions
    Open Safari web browser and click on Safari in menu at the top left of the screen. Once you do this, select Preferences. Click on 'Safari' and select 'Preferences'
  2. Here, select Extensions and look for or other suspicious entries. Click on the Uninstall button to get rid each of them. Go to 'Extensions' and uninstall malicious add-ons
  3. Change your homepage if it was altered by virus:
    Open your Safari web browser and click on Safari in menu section. Here, select Preferences as it was displayed previously and select General.
  4. Here, look at the Homepage field. If it was altered by, remove unwanted link and enter the one that you want to use for your searches. Remember to include the "http://" before typing in the address of the page. When in 'General', delete malicious URL and enter your desired domain name
  5. Reset Safari
    Open Safari browser and click on Safari in menu section at the top left of the screen. Here, select Reset Safari.... Click on 'Safari' and select 'Reset Safari...'
  6. Now you will see a detailed dialog window filled with reset options. All of those options are usually checked, but you can specify which of them you want to reset. Click the Reset button to complete removal process. Select all options and click on 'Reset' button

About the author

Julie Splinters
Julie Splinters - Malware removal specialist

If this free removal guide helped you and you are satisfied with our service, please consider making a donation to keep this service alive. Even a smallest amount will be appreciated.

Contact Julie Splinters
About the company Esolutions


Your opinion regarding