Remove BAIDUBROWSER.EXE malware

BAIDUBROWSER.EXE Malware Removal Guide

Manual removal instructions:

Antivirus Report of BAIDUBROWSER.EXE:
BAIDUBROWSER.EXE Malware
BAIDUBROWSER.EXEDangerous
BAIDUBROWSER.EXEHigh Risk
baidubrowser.exe
Full path on a computer: %LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE
Autostart registry keys:
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\StartMenu
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\URLAssociations
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\DefaultIcon
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\InstallInfo
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\shell
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\shell\open
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\shell\open\command
HKLM\Software\Microsoft\Windows\CurrentVersion\App Paths\baidubrowser.exe
HKLM\SOFTWARE\CLASSES\BAIDUBROWSERHTML\SHELL\OPEN\COMMAND\: ""%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE" -- "%1""
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\URLAssociations\ftp: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\URLAssociations\http: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\URLAssociations\https: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\StartMenu\StartMenuInternet: "baidubrowser.exe"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.htm: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.html: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.shtml: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.xht: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.xhtml: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.mht: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.mhtm: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.mhtml: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.shtm: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.xml: "BaiduBrowserHTML"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\FileAssociations\.crx: "BaiduBrowserHTML"
HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\BAIDUBROWSER.EXE\SHELL\OPEN\COMMAND\: ""%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE""
HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\BAIDUBROWSER.EXE\INSTALLINFO\REINSTALLCOMMAND: ""%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE" -P 2 -I 1"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\InstallInfo\IconsVisible: 0x00000001
HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\BAIDUBROWSER.EXE\DEFAULTICON\: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE,0"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\ApplicationDescription: "?????????????,???????????,???????"
HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\BAIDUBROWSER.EXE\CAPABILITIES\APPLICATIONICON: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE,0"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities\ApplicationName: "?????"
HKLM\Software\Clients\StartMenuInternet\baidubrowser.exe\: "?????"
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BAIDUBROWSER.EXE\: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE"
HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\BAIDUBROWSER.EXE\PATH: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805"
HKLM\Software\RegisteredApplications\baidubrowser.exe: "Software\Clients\StartMenuInternet\baidubrowser.exe\Capabilities"
HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_GPU_RENDERING\baidubrowser.exe: 0x00000001
HKLM\SOFTWARE\CLASSES\FTP\DEFAULTICON\: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE,0"
HKLM\SOFTWARE\CLASSES\FTP\SHELL\OPEN\COMMAND\: ""%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE" -- "%1""
HKLM\SOFTWARE\CLASSES\HTTP\DEFAULTICON\: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE,0"
HKLM\SOFTWARE\CLASSES\HTTP\SHELL\OPEN\COMMAND\: ""%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE" -- "%1""
HKLM\SOFTWARE\CLASSES\HTTPS\DEFAULTICON\: "%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE,0"
HKLM\SOFTWARE\CLASSES\HTTPS\SHELL\OPEN\COMMAND\: ""%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE" -- "%1""
HKLM\Software\Clients\StartMenuInternet\: "baidubrowser.exe"
HKCU\Software\Clients\StartMenuInternet\: "baidubrowser.exe"
Related Files:
%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\ATL100.DLL
%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\ATRJ.DAT
%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BAIDUBROWSER.EXE
%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BASE.DLL
%LOCAL APPDATA%\BAIDU\BAIDUBROWSER\7.6.505.3805\BDB_SCHEME.DAT

The file BAIDUBROWSER.EXE was tested and considered as Adware.
Adware displays pop-up ads in order to generate revenue for its author.
BAIDUBROWSER.EXE shows pop-up ads or text ads or advertising banners.
Sometimes BAIDUBROWSER.EXE displays coupons banners for sites you are visiting.
The banners are really annoying and invasive.
There is no way to stop BAIDUBROWSER.EXE unwanted pop-ups.
Clicking link causes randomly redirecting your browser to the different pages with advertisements of computer speedup utilities fake antiviruses and other unwanted software.

How did BAIDUBROWSER.EXE got on my computer?


It can be downloaded from the program's web site or bundled with some third-party software.
BAIDUBROWSER.EXE is often bundled within the installers from download sites.
Most of software download sites distribute pay-per-install bundles instead of original installers.
We recommend you to download software only from vendor web site or from trusted sources.
BAIDUBROWSER.EXE is related to: W32.HfsAdware.9CF6, BAIDUBROWSER.EXE.
Virustotal = 2/55
MD5 = F828401858FCB9E92B7BF7CA967671D5
File Size: 58400

File information:
OriginalFilename: baidubrowser.exe
FileDescription: ?????
InternalName: baidubrowser.exe
FileVersion: 7.6.505.3805

Remove BAIDUBROWSER.EXE now!

Dmitry Sokolov:

I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.

Since that time I work every day to fix the issues that antiviruses cannot.

If your antivirus have not helped you solve the problem, you should try UnHackMe.

We are a small company and you can ask me directly, if you have any questions.

Testimonials

You can read UnHackMe testimonials here.