Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

9, 4, 0, 2 1.69%
9, 3, 0, 4 1.69%
8, 9, 0, 3 1.69%
8, 8, 0, 3 1.69%
8, 2, 0, 3 1.69%
8, 1, 0, 2 8.47%
7, 6, 0, 2 11.86%
7, 2, 0, 1 6.78%
7, 2, 0, 1 1.69%
7, 1, 0, 3 1.69%
7, 0, 0, 1 3.39%
6, 9, 0, 1 13.56%
6, 7, 0, 4 3.39%
6, 6, 0, 4 5.08%
6, 5, 0, 3 8.47%
6, 3, 0, 3 1.69%
6, 2, 0, 2 23.73%
4, 9, 0, 5 1.69%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyExW, GetLengthSid, RegEnumValueW, GetSecurityDescriptorLength, MakeSelfRelativeSD, GetSecurityDescriptorControl, GetSecurityDescriptorOwner, GetSecurityDescriptorGroup, GetSecurityDescriptorDacl, GetSecurityDescriptorSacl, ConvertSidToStringSidW, ConvertStringSecurityDescriptorToSecurityDescriptorW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegCreateKeyExW, RegOpenKeyExW, RegSetValueExW, RegQueryInfoKeyW, CopySid, RegNotifyChangeKeyValue, RegQueryValueExW, OpenProcessToken, DuplicateTokenEx, GetTokenInformation, IsValidSid
comctl32.dll
PropertySheetW, InitCommonControlsEx
gdi32.dll
ExtTextOutW, SetBkColor, SetTextColor, GetObjectW, CreateFontIndirectW, GetStockObject, SetBkMode, SelectObject, DeleteObject
kernel32.dll
FlushFileBuffers, SetEndOfFile, GetFileSize, DeleteFileW, GetModuleHandleA, GetVersion, GetFileAttributesW, OutputDebugStringA, CreateFileMappingW, MapViewOfFile, UnmapViewOfFile, OpenEventW, PulseEvent, TerminateProcess, GetPrivateProfileStringW, GetTempPathW, WideCharToMultiByte, GetVersionExW, VerSetConditionMask, VerifyVersionInfoW, CreateToolhelp32Snapshot, Process32FirstW, Process32NextW, GetProcessHeap, HeapFree, FormatMessageW, HeapAlloc, DebugBreak, OutputDebugStringW, GetCurrentProcessId, FindFirstFileW, FindNextFileW, ExpandEnvironmentStringsW, CreateDirectoryW, SetFileAttributesW, SetFilePointer, GetTempFileNameW, FindClose, GetSystemTime, SystemTimeToFileTime, SetFileTime, GetFullPathNameW, GetFullPathNameA, CreateFileA, QueryPerformanceCounter, InterlockedCompareExchange, UnlockFile, LockFile, GetTickCount, UnlockFileEx, GetSystemTimeAsFileTime, FormatMessageA, GetFileAttributesA, LockFileEx, GetDiskFreeSpaceW, LoadLibraryA, GetDiskFreeSpaceA, GetSystemInfo, GetFileAttributesExW, GetTempPathA, AreFileApisANSI, DeleteFileA, CompareStringW, lstrcpyW, CreateThread, SetErrorMode, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, GetStartupInfoW, InterlockedExchange, HeapSize, HeapReAlloc, HeapDestroy, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, WriteFile, ReadFile, Sleep, OpenMutexW, CreateFileW, ReadDirectoryChangesW, GetOverlappedResult, OpenProcess, CreateEventW, GetModuleFileNameW, LoadLibraryExW, LoadLibraryW, FreeLibrary, SetLastError, lstrcmpiW, GetModuleHandleW, InterlockedDecrement, InterlockedIncrement, lstrlenW, GetProcAddress, GetCurrentThreadId, lstrlenA, MultiByteToWideChar, WaitForSingleObject, ReleaseMutex, CreateMutexW, GetCurrentProcess, FlushInstructionCache, CloseHandle, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSection, LeaveCriticalSection, EnterCriticalSection, RaiseException, GetLastError, CopyFileW, LocalFree, GetExitCodeProcess, IsWow64Process, DllMain
msvcp90.dll
DllMain
msvcr90.dll
DllMain
ole32.dll
CoInitialize, CoUninitialize, CoTaskMemFree, CoCreateInstance, CoTaskMemRealloc, CLSIDFromString, OleRun, CoCreateGuid, StringFromGUID2, CoTaskMemAlloc
psapi.dll
GetModuleBaseNameW, EnumProcessModules, EnumProcesses
shell32.dll
ShellExecuteW, SHGetFolderPathW, Shell_NotifyIconW, ShellExecuteExW
shlwapi.dll
PathFileExistsW, PathAppendW, PathIsDirectoryW, PathAddBackslashW, UrlEscapeW
user32.dll
GetClassNameW, LoadBitmapW, RealGetWindowClassW, ModifyMenuW, IsMenu, GetWindowDC, DrawTextExW, BeginPaint, EndPaint, FillRect, IsWindowEnabled, GetSysColor, GetFocus, DrawFocusRect, SetCursor, SetFocus, SetCapture, GetCapture, ReleaseCapture, GetDlgCtrlID, GetCursorPos, UpdateWindow, InvalidateRect, LoadCursorW, CreateWindowExW, GetWindowTextLengthW, GetWindowTextW, SetRectEmpty, EnableWindow, DrawTextW, OffsetRect, CallWindowProcW, SetActiveWindow, MoveWindow, ScreenToClient, UnregisterClassA, SetDlgItemTextW, wvsprintfW, LoadStringW, PtInRect, ReleaseDC, GetDC, CopyRect, IsWindow, GetDlgItem, PostMessageW, DefWindowProcW, DestroyWindow, CharNextW, RegisterWindowMessageW, GetActiveWindow, DialogBoxParamW, KillTimer, GetWindow, GetWindowRect, MonitorFromWindow, GetMonitorInfoW, GetClientRect, MapWindowPoints, EndDialog, SetWindowLongW, SetWindowTextW, SendMessageW, LoadImageW, GetSystemMetrics, SetTimer, GetWindowLongW, SendDlgItemMessageW, GetParent, SetWindowPos, SendMessageTimeoutW, GetDesktopWindow, GetWindowThreadProcessId, EnumWindows, CharLowerW, AdjustWindowRectEx, GetMenu, DrawEdge, InflateRect, ClientToScreen, SystemParametersInfoW
userenv.dll
UnloadUserProfile
wininet.dll
InternetGetConnectedState, InternetQueryOptionW, InternetCloseHandle, InternetOpenW, HttpQueryInfoW, InternetCrackUrlW, InternetReadFile, HttpSendRequestW, HttpOpenRequestW, InternetConnectW, InternetSetOptionW

SearchSettings.exe

Widgi Toolbar by Spigot (Signed)

Remove SearchSettings.exe
Version:   6, 5, 0, 3
MD5:   36acfc66fa66fd80b66592980569f90d
SHA1:   85de3ef81483b78df328b09cf470630b4080d1ed
SHA256:   386496014a0e15ed0cb43a11bffdbbf370b21092256ea862e8e832ac0ac19a00

What is SearchSettings.exe?

The Widgi Search Settings Toolbar is a toolbar built on the spigot platform. The toolbar is usually installed together with other software. Typically, PC owner is not careful enough and leave some checkboxes unchecked. That is how one of such Widgi toolbars land on their browser. The Widgi Toolbar displays advertisements, or change your browsers default search provider.

About SearchSettings.exe (from Spigot)

The Spigot Search Settings is an application which is part of the Spigot Toolbar. Spigot searchsettings.exe's purpose is to check periodically your default search engine and restore it to Yahoo in cas

DetailsDetails

File name:searchsettings.exe
Publisher:Spigot, Inc.
Product name:Widgi Toolbar
Description:Search Settings
Typical file path:C:\Program Files\common files\spigot\search settings\searchsettings.exe
File version:6, 5, 0, 3
Size:1.06 MB (1,111,432 bytes)
Certificate
Issued to:Spigot
Authority (CA):VeriSign
Expiration date:Saturday, March 28, 2015
Digital DNA
PE subsystem:Windows GUI
File packed:No
Code language:Microsoft Visual C++ 9.0
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'SearchSettings' → "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
Network connections
  • [UDP] listens on port 59945
  • [UDP] listens on port 50429
  • [UDP] listens on port 62119

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.01654166%
    0.028634%
    Kernel CPU:0.01351690%
    0.013761%
    User CPU:0.00302477%
    0.014873%
    Kernel CPU time:658 ms/min
    100,923,805ms/min
    CPU cycles:330,893/sec
    17,470,203/sec
    Context switches:53/sec
    284/sec
    Memory
    Private memory:4.36 MB
    21.59 MB
    Private (maximum):2.41 MB
    Private (minimum):2.37 MB
    Non-paged memory:4.36 MB
    21.59 MB
    Virtual memory:100.88 MB
    140.96 MB
    Virtual memory (peak):106.85 MB
    169.69 MB
    Working set:2.46 MB
    18.61 MB
    Working set (peak):12.26 MB
    37.95 MB
    Page faults:5,616/min
    2,039/min
    I/O
    I/O read transfer:7 Bytes/sec
    1.02 MB/min
    I/O read operations:1/sec
    343/min
    I/O write transfer:0 Bytes/sec
    274.99 KB/min
    I/O write operations:1/sec
    227/min
    I/O other transfer:98 Bytes/sec
    448.09 KB/min
    I/O other operations:7/sec
    1,671/min
    Resource allocations
    Threads:9
    12
    Handles:369
    600
    GUI GDI count:35
    103
    GUI GDI peak:49
    142
    GUI USER count:19
    49
    GUI USER peak:32
    71

    BehaviorsProcess properties

    Integrety level:High
    Platform:32-bit
    Command line:"C:\Program Files\common files\spigot\search settings\searchsettings.exe" dfromkit
    Owner:User
    Parent process:msiexec.exe (Windows Installer - Unicode by Microsoft)

    ResourcesThreads

    Averages
     
    SearchSettings.exe (main module)
    Total CPU:0.00579559%
    0.272967%
    Kernel CPU:0.00441315%
    0.107585%
    User CPU:0.00138244%
    0.165382%
    CPU cycles:386,036/sec
    5,741,424/sec
    Context switches:6/sec
    79/sec
    Memory:1.07 MB
    1.16 MB
    WININET.dll
    Total CPU:0.00006506%
    Kernel CPU:0.00006506%
    User CPU:0.00000000%
    CPU cycles:6,437/sec
    Memory:980 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Home Premium 22.03%
    Windows 7 Ultimate N 22.03%
    Windows 7 Ultimate 18.64%
    Microsoft Windows XP 15.25%
    Windows 8 Pro 5.08%
    Windows 7 Professional 5.08%
    Windows 8 3.39%
    Windows Vista Ultimate 3.39%
    Windows Vista Home Premium 1.69%
    Windows 8 Pro with Media Center 1.69%
    Windows 8 Single Language 1.69%

    Distribution by countryDistribution by country

    United States installs about 30.00% of Widgi Toolbar.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    Acer 25.00%
    Toshiba 22.22%
    Hewlett-Packard 19.44%
    Dell 11.11%
    GIGABYTE 8.33%
    Compaq 5.56%
    ASUS 5.56%
    American Megatrends 2.78%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE