Steps to Remove from Your Computer

If you are facing the issues below, then it is possible that your computer has been infected by a browser hijacker named

  • This website “” replaces the website you prefer as your default homepage.
  • This website “” replaces the blank page as your new tab page.
  • A search engine called Omiga-plus replaces your favarite one as the default.
  • When search the internet, you receive many ads and sponsored link in the results list or on somewhere else of the page.
  • When clicking on the search results, you are redirected to some websites that are irrelevant to your search queries.
  • You can’t access to certain websites, such as security tools related sites.
  • Some unwanted toolbars are installed on your web browsers without your permission.
  • Some malicious website URLs are added to your bookmarks list or Favorite folder.
  • Your network speed becomes slower than usual.
  • Your browser and system respond slowly and even crashes down occasionally.

As you can see above, having got infected by this browser hijacker, you may suffer from a series of problems. Hence, it is advised that you take immediate action to remove from your PC. In the following, we will give details of this browser hijacker and also provide the useful guide to remove this threat completely.

How does the threat look like?


Threat’s profile:

Created by Taiwan Shui Mu Chih Ching Technology Limited
Category Browser Hijacker
Threat Level Medium
File Name aon_ar_omiga.exe
Process Name aon_ar_omiga.exe
Possible Installation Folder C:Program Files is a nasty browser hijacker used by cyber hackers to reset the browser homepage, change the default search engine, hijack search results and inject deceptive or misleading ads on web pages. These can be done by replacing the DNS (Domain Name System) servers configured on routers with the rogue ones controlled by the remote cyber hackers. All actions taken by the browser hijacker serve for one purpose: making money. To be more specific, it is used for advertising and promotion. By modifying your homepage and search engine, it can deliver many ads and sponsored links in your search results and redirect you to lots of ad-based websites. More users click on the ads and sponsored links or visit the particular websites, the cyber hackers can get more money from the advertisers or website owners.

Usually, this browser hijacker gets installed on your computer when you have the following online activities:

  • You install a free application without noticing that will also be installed together.
  • You open an unknown email attachment out of curiosity and activate the codes of the browser hijacker.
  • You browse a website that have been hacked by cyber hackers and unwittingly download the browser hijacker.
  • You click on a link which you think would download an anti-malware program but in fact download a browser hijacker.

software bundled unwanted program

Some browser hijackers consist of two components: an application which can be found in the list of installed programs, and extensions installed on your web browsers. Some only have an application or do not have any components. belongs to the type that only has an application.

related program

Once it attack your web browsers, it manages activities that redirect you to unwanted sites, collect your online data, and deliver various ads based on your browsing habits. In fact, this browser hijacker can also act as a data collector. It may collect your IP address, geographical location, version of OS, type of browser, search queries and most-visited sites, and send these data to a remote server. The data receivers, generally advertisers, will make use of these data to analyze your browsing pattern and send out numerous ads matching your interests.


Certainly, the browser hijacker is responsible for displaying those personalized ads on web pages that you are visiting. Each click on these paid-per-click ads will help creators of this browser hijacker to make money. Note that not all those ads delivered by the browser hijacker are safe to click. Some ads are deceptive and even malicious. By clicking on them, you may get a great opportunity of downloading fake or rogue program on your PC.

pop-up ads

TipHow to prevent browser hijacking?

It is important that you first install a reliable anti-malware program and keep it updated regularly, if you want to protect your computer from browser hijacker infection and other types of malware infections. Keeping your web browsers and other third-party software up-to-date is also very vital, since vast of majority of malware including browser hijackers often sneaks into your computer by exploiting vulnerabilities in outdated browsers and browser plug-ins like Flash Player, Java, and Adobe Reader. Besides, you need to follow these rules: don’t visit unsafe websites; don’t click on unsure links; don’t open email attachments sent by unknown or unexpected people; use caution when downloading and installing free applications, and carefully read the statements on every dialog box during the installation mode. Removal Guide

If you have notice the existence of on your computer, you should get rid of it promptly, since this browser hijacker can mess up your browser settings, cause annoying browser redirection, display deceptive pop-up ads, increase risk of getting malware infection and pose a threat to your personal information.

Usually, there are two removal methods for your choice: the automatic removal method and the manual removal method. The automatic one means that you need to run an advanced malware removal tool to perform a full system scan and delete all found malicious components; while the manual one means that you need to find out and delete all the browser hijacker related components all by yourself.

We highly recommend that you use the automatic removal method, since it is easier, safer and more effective than the manual one. The manual removal not only needs you to uninstall the related application via Control Panel, but also require you to delete all related registry entries, folders and files from your computer complete and correctly. If you make any mistake during the removal process, your system may suffer from some irreparable damage.

Therefore, the automatic removal method should be your first choice. Now you can download and install SpyHunter to automatically remove from your PC.

SpyHunterSpyHunter – An advanced anti-malware program designed to remove various types of malware. It has the free version and the registered version. The free version only supports users to scan the threats; while the registered version not only include the detection and removal features, but also provides live technical support and other key features.



Now follow these steps to install SpyHunter and use it to remove the nasty browser hijacker:

» Download SpyHunter install-exe by clicking on the download button below.
2529_03» Double click on the downloaded file to run it.

SpyHunter shortcut» Click Run when a dialog box pops up.

run file» Select your language and click OK.

select your language» Click CONTINUE to proceed.

click continue» Accept the EULA and Privacy Policy and click the Install button.

Accept the EULA and Privacy Policy» When the setup is successful, click Exit. Then, launch SpyHunter by clicking on its icon on the desktop.

click-exit» Click on Scan Computer Now to scan for the threats in your system.


» SpyHunter now will start to scan your system for threats.


» Once the scan is done, click on Fix Threats to delete all detected threats.

spyhunter-fix threats

Alternative Tools:

MalwarebytesMalwarebytes – An easy-to-use, fast and effective anti-malware program that uses advanced technology to block, detect and remove all kinds of malware infections. This program can be compatible with other types of antivirus programs.malware download



spyware removal toolMax Spyware Detector – A users-friendly and professional anti-spyware program designed with advanced technology to detect & delete special spyware that invade your privacy and security with an option of quick and full scan. This program offers registry fix feature to restore your original settings.




If you can’t afford or don’t want to buy a paid anti-malware program, you can try the manual removal method by following the steps below. However, it should be noted that, the manual removal does not guarantee a completely removal of the browser hijacker due to some reason, and it would run the risk of damaging your system, if any mistake occur during the process. So, you should use this method with caution.

Step 1: Stop related process via Task Manager.

Right click on the task bar and select the Task Manager option.

open task managerIn the pop-up window, click the Processes tab.

end processScroll down to look for any process related to the browser hijacker, for example, process with name “aon_ar_omiga.exe”.
If you find one, right click it and click End Process to stop it from running in your system anymore.

Step 2: Remove the browser hijacker related program via Control Panel.

For Windows 8 or 8.1, right click the bottom left of the computer screen and click Control Panel.

control-panel-win8For Windows XP/7/Vista, click Start and then click Control Panel.

click start-control-panel-windows7

For Windows 7/Vista/8/8.1, click Uninstall a program under the Program category or click Program and Features. Then you will get a window which show all programs currently installed on your computer.

uninstall-a-programFor Windows XP, click Add or Remove Programs. Then you will get a window which show all programs currently installed on your computer.


Scroll down to search for any program related to the browser hijacker, click it and click Uninstall/Change (Windows /7/Vista/8/8.1) or Remove (Windows XP).

uninstall program3

Follow the prompts to complete removal of the program.

Step 3: delete folders and files associated with

Open any folder, from the left side locate Organize and select Folder and search options from the drop down menu.

show hidden files-windows7

Under View tab, and select the box saying Show hidden files, folders and drives, deselect Hide protected operating system files (Recommended), and click OK. This will show all hidden files and folders.

show hidden files-windows7_2

Navigate to this folder: C:Program Files
Look for any folders or files (e.g. aon_ar_omiga.exe) related to the browser hijacker, and delete them completely.


Step 4: Clear shortcut.

Right click the icon of Internet Explorer, and click Properties.
Under Shortcut tab, remove “” from the Target field and click OK.

delete-shortcut-ieRepeat the above steps to clear the unwanted shortcut from other types of browsers like Mozilla Firefox, Google Chrome, Opera and Safari.

Step 5: Delete the unwanted search page and start page from Internet Explorer.

Make sure that Internet Explorer is closed.
Open the Registry Editor by following these steps: Click Start, type regedit into the search box and click the regedit.exe program from the result list.

open registry editorOnce the Registry Editor is open, follow this path “HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMain” to find out and delete the registry keys as shown below:

delete search page and startpageScroll down, locate TypedURLs, and delete the registry key shown below:

delete-url-Then, follow this path “HKEY_LOCAL_MACHINESoftwareMicrosoftInternet ExplorerMain” to find out and delete the registry keys as shown below:

delete search page and startpage_

Step 6: Reset the search engine and homepage in Mozilla Firefox.

Open the Mozilla Firefox.

Type about:config in the URL address bar, and press Enter.

remove value from firefox1

Click “I’ll be careful, I promise!“.

remove value from firefox2

Type omiga-plus into the Search field and you will be shown some values as following:

remove value from firefox3Right-click on first item, and click Reset.

remove value from firefox4Right-click on second item, and click Reset.

remove value from firefox5

Step 7: Reset the start page, homepage and search engine in Google Chrome.

Run Google Chrome, type chrome://settings/ into the address bar and press Enter.

open the settings pageIn the open page, locate On Startup, and click Set pages.

clicl setpages_Delete the unwanted website URL by clicking the X mark, and click OK.

delete startup pageUnder Appearance, tick Show Home button and click Change.

click-Change_Delete the unwanted website URL and click OK.

delete unwanted site URLUnder Search, click Manage search engines.

remove search engine 1Select a search engine you prefer, e.g. Google, and click Make Default.

delete unwanted search engine 1Then, look for the search engine with name “omig-plus” and it by clicking the X mark and click Done.

delete unwanted search engine 2

You need to restart your browsers after you have made changes on them. Then, restart your computer to complete the removal.

Tips: If you still find the traces of after restart the computer, it is sincerely suggested that you use the registered version of SpyHunter to detect and delete all its components from your system. This tool has been tested to is capable of to detect and remove as well as other malicious threats from users’ computers completely. Now you can click on the download button below to get this powerful tool downloaded on your PC.



Attention: The following video offers a complete guide for redirect virus removal. You’d better watch it in full-screen mode!


Additional information:


What is DNS?

DNS descriptionSource:

Share Button