Severity scale:  

Remove virus (Easy Removal Guide) - Sep 2017 update

removal by Gabriel E. Hall - - | Type: Browser hijacker search engine tracks information about users redirect virus is a search engine created by Polarity Technologies that offers quick access to popular websites and email services. Nevertheless, it redirects search queries to Yahoo; it’s not a reliable program. Security experts know it as a potentially unwanted program (PUP) and a browser hijacker.

The browser extension spreads in software packages and might hijack the browser without asking direct user’s permission. However, right after such program places its components in Windows Registry, it also installs an extension to each web browser that is installed on the affected machine. This extension alters browser’s settings and sets this page as your new main page and a default search engine.

Be aware of the fact that this search website looks completely safe, but it can bring sponsored or even more severe search outcomes to you. Please keep in mind that this page might deliver search outcomes that hold corrupted hyperlinks, so do not be surprised if you end up on an entirely different page than you expected to visit. Such redirect tendencies are supposed to generate pay-per-click revenue for the developers of this site (OneSearch).

We have noticed that so-called virus[1] might reroute you to pages that ask to install some suspicious programs for free – you should not fall for such suggestions. Otherwise, you risk infecting your computer with questionable programs that MIGHT cause harm to your computer. Also, if you will ever be asked to reveal your personal information[2] when you visit unknown websites – DO NOT do that.

However, this search engine itself might collect a bunch of different information about users, such as:

  • type of the browser;
  • type of the operating system;
  • IP address;
  • geographic location;
  • the domain name of the Internet service provider (ISP);
  • browsing-related information (search queries, visited websites, etc.);
  • and other details.

If you do not like an idea of being spied on, you should hurry up with removal. The longer you let it stay on Chrome, Firefox or another web browser, the more problems it might cause. Therefore, you can quickly get rid of it with an anti-spyware[3] program, such as Reimage or SpyHunter 5Combo Cleaner.

Additionally, you can remove manually. At the end of the article, you will find detailed instructions on how to delete all hijacker-related entries.

Questions about virus

The picture of virus virus not only takes control over the browser but also collects information about users.

Versions of browser hijacker This version of the PUP usually spread as a Games NewTab extension. It might hijack popular web browsers and set as default search engine. After the installation, it might cause other problems, such as delivery of ads, redirects to suspicious sites and data tracking.

Therefore, this program might pose a risk to your privacy. Aggregated information might be shared with third-parties that are usually are advertising networks. Unfortunately, some of them might be distributing malicious ads.[4] Thus, hijacker’s removal is a must. The hijacker spreads in software bundles and pretends to be a useful search tool that offers quick access to popular email services. However, trusting and installing it is not recommended. It might hijack startup page, set its domain as default search engine, and deliver unwanted commercial content.

Additionally, virus might collect various information about users in order to participate in the online advertising business. The hijacker might display ads and paid links and profit from the clicks on them. However, they may lead to high-risk websites as well. This PUP share the similar features as the versions discussed above. It enters travels with the help of freeware, enters the system silently and triggers numerous changes. The virus might replace browser’s homepage and search engine address. In order to strengthen its presence, it might alter Registry and several Windows shortcuts.

In order to reject these changes and uninstall the hijacker, users might need to employ a professional antivirus or anti-malware. We do not recommend postponing this task because it might also track various information about users.

Software bundling – the main distribution strategy of the PUP

Bundling technique is the most popular way to spread potentially unwanted products. It makes it possible to distribute several programs together as a one software pack. It can nicely “force” you to install unwanted programs – the installation setup of such bundled software tends to hide the agreements to install optional apps under “Default” or “Basic” installation options.

To refuse to install them, you need to choose “Advanced” or “Custom” settings and then deselect any suspicious suggestions to install unfamiliar software.[5]

Eliminate in a correct way

Although it is not a malicious threat, it is definitely an annoying computer parasite that should not be kept on the system. Thus, you should remove either automatically or manually. The manual removal guide is given below the text.

However, if you fail with manual removal, you should opt for the automatic elimination option. You can recognize the failure from finding this site on the browser or seeing intrusive ads again.

You can remove virus damage automatically with a help of one of these programs: Reimage, SpyHunter 5Combo Cleaner, Malwarebytes. We recommend these applications because they detect potentially unwanted programs and viruses with all their files and registry entries that are related to them.

do it now!
Reimage (remover) Happiness
Reimage (remover) Happiness
Compatible with Microsoft Windows Supported versions Compatible with OS X Supported versions
What to do if failed?
If you failed to remove virus damage using Reimage, submit a question to our support team and provide as much details as possible.
Reimage is recommended to remove virus damage. Free scanner allows you to check whether your PC is infected or not. If you need to remove malware, you have to purchase the licensed version of Reimage malware removal tool.
Alternative Software
Different security software includes different virus database. If you didn’t succeed in finding malware with Reimage, try running alternative scan with SpyHunter 5.
Alternative Software
Different security software includes different virus database. If you didn’t succeed in finding malware with Reimage, try running alternative scan with Combo Cleaner.

To remove virus, follow these steps:

Eliminate from Windows systems

Uninstall all programs from Windows that might be related to

  1. Click Start Control Panel Programs and Features (if you are Windows XP user, click on Add/Remove Programs). Click 'Start -> Control Panel -> Programs and Features' (if you are 'Windows XP' user, click on 'Add/Remove Programs').
  2. If you are Windows 10 / Windows 8 user, then right-click in the lower left corner of the screen. Once Quick Access Menu shows up, select Control Panel and Uninstall a Program. If you are 'Windows 10 / Windows 8' user, then right-click in the lower left corner of the screen. Once 'Quick Access Menu' shows up, select 'Control Panel' and 'Uninstall a Program'.
  3. Uninstall and related programs
    Here, look for or any other recently installed suspicious programs.
  4. Uninstall them and click OK to save these changes. Right click on each of suspicious entries and select 'Uninstall'
  5. Remove from Windows shortcuts
    Right click on the shortcut of Mozilla Firefox and select Properties. Right click on browsers' icon and select 'Properties'
  6. Go to Shortcut tab and look at the Target field. Delete malicious URL that is related to your virus. Select 'Shortcut' tab and delete '' or other suspicious URL

Repeat steps that are given above with all browsers' shortcuts, including Internet Explorer and Google Chrome. Make sure you check all locations of these shortcuts, including Desktop, Start Menu and taskbar.

Delete from Mac OS X system

  1. If you are using OS X, click Go button at the top left of the screen and select Applications. Cick 'Go' and select 'Applications'
  2. Wait until you see Applications folder and look for or any other suspicious programs on it. Now right click on every of such entries and select Move to Trash. Click on every malicious entry and select 'Move to Trash'

Erase from Internet Explorer (IE)

Make sure that any suspicious entries were not left in the Internet Explorer.

  1. Remove dangerous add-ons
    Open Internet Explorer, click on the Gear icon (IE menu) on the top right corner of the browser and choose Manage Add-ons. Click on menu icon and select 'Manage add-ons'
  2. You will see a Manage Add-ons window. Here, look for and other suspicious plugins. Disable these entries by clicking Disable: Right click on each of malicious entries and select 'Disable'
  3. Change your homepage if it was altered by virus:
    Click on the gear icon (menu) on the top right corner of the browser and select Internet Options. Stay in General tab.
  4. Here, remove malicious URL and enter preferable domain name. Click Apply to save changes. Delete malicious URL, enter your desired domain name and click 'Apply' to save changes
  5. Reset Internet Explorer
    Click on the gear icon (menu) again and select Internet options. Go to Advanced tab.
  6. Here, select Reset.
  7. When in the new window, check Delete personal settings and select Reset again to complete removal. Go to 'Advanced' tab and click on 'Reset' button. Now select 'Delete personal settings' and click on 'Reset' button again

Remove virus from Microsoft Edge

Follow these steps after the Edge hijack:

Reset Microsoft Edge settings (Method 1):

  1. Launch Microsoft Edge app and click More (three dots at the top right corner of the screen).
  2. Click Settings to open more options.
  3. Once Settings window shows up, click Choose what to clear button under Clear browsing data option. Go to Settings and select 'Choose what to clear'
  4. Here, select all what you want to remove and click Clear. Select 'Clear' button
  5. Now you should right-click on the Start button (Windows logo). Here, select Task Manager. Open the start menu and select 'Task Manager'
  6. When in Processes tab, search for Microsoft Edge.
  7. Right-click on it and choose Go to details option. If can’t see Go to details option, click More details and repeat previous steps. Right-click 'Microsoft Edge' and select 'Go to details' Select 'More details' if 'Go to details' option fails to show up
  8. When Details tab shows up, find every entry with Microsoft Edge name in it. Right click on each of them and select End Task to end these entries. Find Microsoft Edge entries and select 'End Task'

Resetting Microsoft Edge browser (Method 2):

If Method 1 failed to help you, you need to use an advanced Edge reset method.

  1. Note: you need to backup your data before using this method.
  2. Find this folder on your computer: C:\Users\%username%\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe.
  3. Select every entry which is saved on it and right click with your mouse. Then Delete option. Go to Microsoft Edge folder on your computer, right-click every entry and click 'Delete'
  4. Click the Start button (Windows logo) and type in window power in Search my stuff line.
  5. Right-click the Windows PowerShell entry and choose Run as administrator. Find Windows PowerShell, right-click it and select 'Run as administrator'
  6. Once Administrator: Windows PowerShell window shows up, paste this command line after PS C:\WINDOWS\system32> and press Enter:
    Get-AppXPackage -AllUsers -Name Microsoft.MicrosoftEdge | Foreach {Add-AppxPackage -DisableDevelopmentMode -Register $($_.InstallLocation)\AppXManifest.xml -Verbose}
    Copy and paste a required command and press 'Enter'

Once these steps are finished, should be removed from your Microsoft Edge browser.

Uninstall from Mozilla Firefox (FF)

Uninstall all Firefox extensions that are related or developed by Polarity Technologies.

  1. Remove dangerous extensions
    Open Mozilla Firefox, click on the menu icon (top right corner) and select Add-ons Extensions. Click on menu icon and select 'Add-ons'
  2. Here, select and other questionable plugins. Click Remove to delete these entries. Select 'Extensions' and look for malicious entries. Click 'Remove' to get rid of each of them
  3. Change your homepage if it was altered by virus:
    Click on the menu (top right corner), choose Options General.
  4. Here, delete malicious URL and enter preferable website or click Restore to default.
  5. Click OK to save these changes. When in 'General' tab, delete malicious URL from 'Home Page' section or click on 'Restore to Default' button. Click 'OK' to save changes
  6. Reset Mozilla Firefox
    Click on the Firefox menu on the top left and click on the question mark. Here, choose Troubleshooting Information. Click on menu icon and then on '?'. Select 'Troubleshooting Information'
  7. Now you will see Reset Firefox to its default state message with Reset Firefox button. Click this button for several times and complete removal. Click on 'Reset Firefox' button for a couple of times

Get rid of from Google Chrome

These steps will help you to clean Google Chrome and use it normally again:

  1. Delete malicious plugins
    Open Google Chrome, click on the menu icon (top right corner) and select Tools Extensions. Click on menu icon. Select 'Tools' and 'Extensions'
  2. Here, select and other malicious plugins and select trash icon to delete these entries. Look for malicious entries and delete each of them by clicking on the Trash bin icon
  3. Change your homepage and default search engine if it was altered by your virus
    Click on menu icon and choose Settings.
  4. Here, look for the Open a specific page or set of pages under On startup option and click on Set pages. After clicking on menu and 'Settings', select 'Set pages'
  5. Now you should see another window. Here, delete malicious search sites and enter the one that you want to use as your homepage. Click 'X' to remove malicious URLs
  6. Click on menu icon again and choose Settings Manage Search engines under the Search section. When in 'Settings', select 'Manage search engines...'
  7. When in Search Engines..., remove malicious search sites. You should leave only Google or your preferred domain name. Click 'X' to remove malicious URLs
  8. Reset Google Chrome
    Click on menu icon on the top right of your Google Chrome and select Settings.
  9. Scroll down to the end of the page and click on Reset browser settings. When in 'Settings', scroll down to 'Reset browser settings' button and click on it
  10. Click Reset to confirm this action and complete removal. Click on 'Reset' button to complete your removal

Eliminate from Safari removal from Safari instructions are below:

  1. Remove dangerous extensions
    Open Safari web browser and click on Safari in menu at the top left of the screen. Once you do this, select Preferences. Click on 'Safari' and select 'Preferences'
  2. Here, select Extensions and look for or other suspicious entries. Click on the Uninstall button to get rid each of them. Go to 'Extensions' and uninstall malicious add-ons
  3. Change your homepage if it was altered by virus:
    Open your Safari web browser and click on Safari in menu section. Here, select Preferences as it was displayed previously and select General.
  4. Here, look at the Homepage field. If it was altered by, remove unwanted link and enter the one that you want to use for your searches. Remember to include the "http://" before typing in the address of the page. When in 'General', delete malicious URL and enter your desired domain name
  5. Reset Safari
    Open Safari browser and click on Safari in menu section at the top left of the screen. Here, select Reset Safari.... Click on 'Safari' and select 'Reset Safari...'
  6. Now you will see a detailed dialog window filled with reset options. All of those options are usually checked, but you can specify which of them you want to reset. Click the Reset button to complete removal process. Select all options and click on 'Reset' button

About the author

Gabriel E. Hall
Gabriel E. Hall - Passionate web researcher

If this free removal guide helped you and you are satisfied with our service, please consider making a donation to keep this service alive. Even a smallest amount will be appreciated.

Contact Gabriel E. Hall
About the company Esolutions


  1. abdullah says:
    January 14th, 2016 at 6:36 am

    Save your time, do not install this bad program. This search is not reliable or useful at any point of view!

  2. Miroslaw says:
    January 14th, 2016 at 6:37 am

    onesearch virus installed itself without my permission and now i cannot remove it!!!

Your opinion regarding virus