Browser Redirect “Virus” Removal (Chrome/Firefox)

Parasite may reinstall itself multiple times if you don't delete its core files. We recommend downloading SpyHunter to scan for malicious programs installed with it. This may save you hours and cut down your time to about 15 minutes. 

Download SpyHunter Anti-Malware

More information on SpyHunter, steps to uninstallEULAThreat Assessment Criteria, and Privacy Policy.

This page aims to help you with the “Virus” removal. These “Virus” removal instructions work for Chrome, Firefox and Internet Explorer, as well as every version of Windows.

If VideoBAH “Virus” has gotten installed onto your PC and you are seeking for a way to deal with it, you’ve come to the right place. In this article you will be presented with all the important information that you need to know concerning this intrusive piece of software and you will learn how to handle the current situation without the need to contact a professional. First, let’s answer an important question. Is really a “virus”? No, it is not a “virus”. At least legally speaking. It is a program of the infamous Browser Hijacker type. Applications that fall under this category are generally considered unwanted due to their intrusive nature and behavior. These programs are known to target most popular browsers, such as Chrome, Firefox or IE, changing the homepage and search engine and occasionally redirecting the browser to other pages that the user did not intend to open. Often a Browser Hijacker decreases the quality of one’s online experience by altering the browser’s settings and generally making it more difficult for the user to surf the internet. Browser Redirect Browser Redirect

What is the intended purpose of

Unlike most other regular programs, Browser Hijackers rarely have any actual benefit or helpful feature for the actual user. Instead, for the most part, software of this sort is developed for the sole purpose of its developer making a profit via a variety of methods and schemes. Normally, such Hijackers are a part of the online marketing industry, being used to collect valuable information or to promote other products that the user might later on buy. However, when it comes to how beneficial this application is to you, it probably does not have much to offer in terms of usefulness. It is true that some Browser Hijackers might actually be marketed as having some sort of helpful function, but remember that even if they do, it is probably not worth putting up with all the negative and irritating traits of the annoying piece of software. Therefore, it is generally better to remove the program and seek the functions it offers within other applications that do not have the intrusive behavior of VideoBAH.

Are there any possible harmful effects of a Browser Hijacker?

Normally, software such as is not something you should be concerned with. Programs of that type are generally not regarded as dangerous, threatening or viruses. Despite what some people might think, there is a significant difference between noxious viruses like Ransomware and Trojans and PUP’s (potentially unwanted programs) such as and other Hijackers. While a Ransomware can encrypt all your files and a Trojan can destroy your whole system, a simple Hijacker will most likely only annoy you with its presence without being an actual threat.

Why it is important to get rid of

A Hijackers is usually not dangerous to your system and cyber-security. However, there are quite a few questionable traits that, despite usually not being illegal, are still something you’d be better off without. Apart from what we’ve already mentioned, here are a couple more potential unwanted effects that the majority of Browser Hijackers might have on your PC.

  • Your browser might get spammed with fake or overstated error messages that aim to trick you into purchasing a certain PC optimization tool that often turns out to have little to no actual benefit for your system.
  • Some Hijackers might attempt to look through your browser searches and history in order to collect data that would later be used for online marketing purposes. We consider this to be a privacy invasion and yet another reason why you should probably remove VideoBAH.
  • Your PC might be slowed down due Hijackers often having high system resource requirements. Of course, this is not permanent and will go away as soon as you get rid of the intrusive software.

Tips for the future

It is clearly crucial to remove the irritating piece of software from your PC and that is why we have prepared a Browser Hijacker removal guide that you can find below this article. However, it is also important to learn how you can keep any future unwanted software out of your system. Therefore, we advise you to read and remember the following tips:

  • Stay away from any suspicious e-mails and links that get sent to you. Even if a person from your contacts list has sent them, there is no guarantee that their device had not been hacked and turned into a spam-bot.
  • Be mindful of what sites you visit and what sources you use to download new software from. Make sure you avoid any that you are not sure of and stick to those you know are reputable and trusted.
  • Do not install any file bundles using the Default/Quick installation setting, because if you do that, any added software within the program installer will get on your PC alongside the main program that you are trying to obtain. Instead, when about to install any new program or program bundle, always opt for the Custom configuration option – there you can see all add-ons and uncheck those that seem potentially unwanted, in order to leave them out of the installation.


Type Browser Hijacker
Danger Level Medium (nowhere near threats like Ransomware, but still a security risk)
Symptoms  Different unwanted changes to your browser’s settings such as changed default search engine and homepage are some of the most common Browser Hijacker symptoms.
Distribution Method In the majority of cases programs of the Browser Hijacker type get onto people’s computers via junk mail, hidden download links, torrent files and software bundles.
Detection Tool

Keep in mind, SpyHunter’s malware detection tool is free. To remove the infection, you’ll need to purchase the full version.
More information about SpyHunter and steps to uninstall. “Virus” Removal



Some of the steps will likely require you to exit the page. Bookmark it for later reference.

Reboot in Safe Mode (use this guide if you don’t know how to do it).


To remove parasite on your own, you may have to meddle with system files and registries. If you were to do this, you need to be extremely careful, because you may damage your system.

If you want to avoid the risk, we recommend downloading SpyHunter
a professional malware removal tool.

More information on SpyHunter, steps to uninstallEULAThreat Assessment Criteria, and Privacy Policy.

Reveal All Hidden Files and Folders.

  • Do not skip this  – may have hidden some of its files.

Hold together the Start Key and R. Type appwiz.cpl –> OK.


You are now in the Control Panel. Look for suspicious entries. Uninstall it/them.

Type msconfig in the search field and hit enter. A window will pop-up:


Startup —> Uncheck entries that have “Unknown” as Manufacturer or otherwise look suspicious.


Hold the Start Key and R –  copy + paste the following and click OK:

notepad %windir%/system32/Drivers/etc/hosts

A new file will open. If you are hacked, there will be a bunch of other IPs connected to you at the bottom. Look at the image below:

hosts_opt (1)

If there are suspicious IPs below “Localhost” – write to us in the comments.

Open the start menu and search for Network Connections (On Windows 10 you just write it after clicking the Windows button), press enter.

  1. Right-click on the Network Adapter you are using —> Properties —> Internet Protocol Version 4 (ICP/IP), click  Properties.
  2. The DNS line should be set to Obtain DNS server automatically. If it is not, set it yourself.
  3. Click on Advanced —> the DNS tab. Remove everything here (if there is something) —> OK.



Right click on the browser’s shortcut —> Properties.

NOTE: We are showing Google Chrome, but you can do this for Firefox and IE (or Edge).


Properties —–> Shortcut. In Target, remove everything after .exe.

ie9-10_512x512  Remove from Internet Explorer:

Open IE, click  IE GEAR —–> Manage Add-ons.

pic 3

Find the threat —> Disable. Go to IE GEAR —–> Internet Options —> change the URL to whatever you use (if hijacked) —> Apply.

firefox-512 Removal from Firefox:

Open Firefoxclick  mozilla menu  ——-> Add-ons —-> Extensions.

pic 6

Find the adware/malware —> Remove. Removal from Chrome:

Close Chrome. Navigate to:

 C:/Users/!!!!USER NAME!!!!/AppData/Local/Google/Chrome/User Data. There is a Folder called “Default” inside:

Rename the Folder to Backup Default

Rename it to Backup Default. Restart Chrome.

  • At this point the threat is gone from Chrome, but complete the entire guide or it may reappear on a system reboot.


Press CTRL + SHIFT + ESC simultaneously. Go to the Processes Tab. Try to determine which ones are dangerous. Google them or ask us in the comments.


We get asked this a lot, so we are putting it here: Removing parasite manually may take hours and damage your system in the process. We recommend downloading SpyHunter to see if it can detect parasite files for you.

Right click on each of the problematic processes separately and select Open File LocationEnd the process after you open the folder, then delete the directories you were sent to.



Type Regedit in the windows search field and press Enter.

Inside, press CTRL and F together and type the threat’s Name. Right click and delete any entries you find with a similar name. If they don’t show this way, go manually to these directories and delete/uninstall them:

  • HKEY_CURRENT_USER—-Software—–Random Directory. It could be any one of them – ask us if you can’t discern which ones are malicious.
    HKEY_CURRENT_USER—-Software—Microsoft—-Windows—CurrentVersion—Run– Random
    HKEY_CURRENT_USER—-Software—Microsoft—Internet Explorer—-Main—- Random

Remember to leave us a comment if you run into any trouble!

Leave a Comment