Jump to content

Removal instructions for WajWebEnhance


Recommended Posts

  • Staff

What is WajWebEnhance?

The Malwarebytes research team has determined that WajWebEnhance is adware. These adware applications display advertisements not originating from the sites you are browsing.

How do I know if my computer is affected by WajWebEnhance?

You may see this entry in your list of installed programs:

warning4.png

and these warnings during install:

main.png

warning1.png

and you may see this entry in your "Start Menu":

warning2.png

How did WajWebEnhance get on my computer?

Adware applications use different methods for distributing themselves. This particular one was bundled with other software.

How do I remove WajWebEnhance?

Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted program.

  • Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mbam-setup-version.exe and follow the prompts to install the program.
  • At the end, be sure a check-mark is placed next to the following:
    • Enable free trial of Malwarebytes Anti-Malware Premium
    • Launch Malwarebytes Anti-Malware
  • Then click Finish.
  • If an update is found, you will be prompted to download and install the latest version.
  • Once the program has loaded, select Scan Now. Or select the Threat Scan from the Scan menu.
  • When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
  • Restart your computer when prompted to do so.
Is there anything else I need to do to get rid of WajWebEnhance?
  • No, Malwarebytes' Anti-Malware removes WajWebEnhance completely.
How would the full version of Malwarebytes Anti-Malware help protect me?

We hope our application and this guide have helped you eradicate this hijacker.

As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the WajWebEnhance adware. �It would have warned you before the rogue could install itself, giving you a chance to stop it before it became too late.

protection1.png

Technical details for experts

You will see these signs in a HijackThis log:

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:49252;https=127.0.0.1:49252R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>O23 - Service: WajWebEnhance Service - Unknown owner - C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe
Possible signs in FRST logs:

 () C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe () C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancer.exe ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled. ProxyServer: [.DEFAULT] => http=127.0.0.1:49252;https=127.0.0.1:49252 ProxyEnable: [{userid}] => Internet Explorer proxy is enabled. ProxyServer: [{userid}] => http=127.0.0.1:49252;https=127.0.0.1:49252 R2 WajWebEnhance Service; C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe [691200 2015-05-01] () [File not signed] () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance () C:\Program Files\WajWebEnhance () C:\Program Files\WajamWajam (HKLM\...\WajWebEnhance) (Version: 2.31.2.10 (i2.6) - WajWebEnhance) <==== ATTENTION() C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\ApiHandlr.dll
Alterations made by the installer:

File system details  ---------------------------------------------    Adds the folder C:\Program Files\Wajam       Adds the file uninstall.exe"="5/1/2015 7:27 PM, 883562 bytes, A    Adds the folder C:\Program Files\WajWebEnhance       Adds the file uninstall.exe"="5/1/2015 7:27 PM, 883562 bytes, A    Adds the folder C:\Program Files\WajWebEnhance\Logos    Adds the folder C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer       Adds the file ApiHandlr.dll"="5/1/2015 7:27 PM, 11776 bytes, A       Adds the file FiddlerCore.dll"="4/22/2015 9:23 PM, 370176 bytes, A       Adds the file HtmlAgilityPack.dll"="4/22/2015 9:23 PM, 134144 bytes, A       Adds the file InternetEnhancer.exe"="5/1/2015 7:27 PM, 276992 bytes, A       Adds the file InternetEnhancerService.exe"="5/1/2015 7:27 PM, 691200 bytes, A       Adds the file lan-proxy-settings.dat"="5/7/2015 6:44 PM, 2292 bytes, A       Adds the file makecert.exe"="4/22/2015 9:23 PM, 55632 bytes, A       Adds the file Newtonsoft.Json.dll"="4/22/2015 9:23 PM, 436224 bytes, A       Adds the file wie"="5/7/2015 6:44 PM, 100 bytes, A       Adds the file WJManifest"="5/7/2015 6:44 PM, 22146 bytes, A    Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance       Adds the file Settings.lnk"="5/7/2015 6:44 PM, 1226 bytes, A       Adds the file SignIn with Facebook.lnk"="5/7/2015 6:44 PM, 1236 bytes, A       Adds the file SignIn with Twitter.lnk"="5/7/2015 6:44 PM, 1228 bytes, A       Adds the file Wajam Website.lnk"="5/7/2015 6:44 PM, 1198 bytes, A    Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search       Adds the file Ask.lnk"="5/7/2015 6:44 PM, 1146 bytes, A       Adds the file Google.lnk"="5/7/2015 6:44 PM, 1158 bytes, A       Adds the file IMDb.lnk"="5/7/2015 6:44 PM, 1158 bytes, A       Adds the file Shopping.com.lnk"="5/7/2015 6:44 PM, 1166 bytes, A       Adds the file TripAdvisor.lnk"="5/7/2015 6:44 PM, 1178 bytes, A       Adds the file Wikipedia.lnk"="5/7/2015 6:44 PM, 1160 bytes, A       Adds the file Yahoo!.lnk"="5/7/2015 6:44 PM, 1154 bytes, A    Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping       Adds the file Amazon.lnk"="5/7/2015 6:44 PM, 1158 bytes, A       Adds the file Argos.lnk"="5/7/2015 6:44 PM, 1158 bytes, A       Adds the file Ebay.lnk"="5/7/2015 6:44 PM, 1150 bytes, A       Adds the file Etsy.lnk"="5/7/2015 6:44 PM, 1150 bytes, A       Adds the file HomeDepot.lnk"="5/7/2015 6:44 PM, 1170 bytes, A       Adds the file Ikea.lnk"="5/7/2015 6:44 PM, 1150 bytes, A       Adds the file Lowe's.lnk"="5/7/2015 6:44 PM, 1154 bytes, A       Adds the file Mercadolivre.lnk"="5/7/2015 6:44 PM, 1178 bytes, A       Adds the file MyShopping.lnk"="5/7/2015 6:44 PM, 1174 bytes, A       Adds the file Sears.lnk"="5/7/2015 6:44 PM, 1154 bytes, A       Adds the file Target.lnk"="5/7/2015 6:44 PM, 1158 bytes, A       Adds the file Tesco.lnk"="5/7/2015 6:44 PM, 1154 bytes, A       Adds the file Walmart.lnk"="5/7/2015 6:44 PM, 1162 bytes, A       Adds the file Zalando.lnk"="5/7/2015 6:44 PM, 1162 bytes, A    Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Uninstall Wajam       Adds the file uninstall.lnk"="5/7/2015 6:44 PM, 1927 bytes, ARegistry details  ------------------------------------------    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\InternetEnhancer_RASAPI32]       "ConsoleTracingMask"="REG_DWORD", -65536       "EnableConsoleTracing"="REG_DWORD", 0       "EnableFileTracing"="REG_DWORD", 0       "FileDirectory"="REG_EXPAND_SZ, "%windir%\tracing"       "FileTracingMask"="REG_DWORD", -65536       "MaxFileSize"="REG_DWORD", 1048576    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\InternetEnhancer_RASMANCS]       "ConsoleTracingMask"="REG_DWORD", -65536       "EnableConsoleTracing"="REG_DWORD", 0       "EnableFileTracing"="REG_DWORD", 0       "FileDirectory"="REG_EXPAND_SZ, "%windir%\tracing"       "FileTracingMask"="REG_DWORD", -65536       "MaxFileSize"="REG_DWORD", 1048576    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings]       "ProxyEnable"="REG_DWORD", 0    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]       "DefaultConnectionSettings"="REG_BINARY, ..........................................................       "SavedLegacySettings"="REG_BINARY, ................................................................    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajWebEnhance]       "DisplayIcon"="REG_SZ", "C:\Program Files\WajWebEnhance\Logos\wajam.ico"       "DisplayName"="REG_SZ", "Wajam"       "DisplayVersion"="REG_SZ", "2.31.2.10 (i2.6)"       "Publisher"="REG_SZ", "WajWebEnhance"       "UninstallString"="REG_SZ", "C:\Program Files\Wajam\uninstall.exe"       "URLInfoAbout"="REG_SZ", "http://www.technologievanhorne.com"    [HKEY_LOCAL_MACHINE\SOFTWARE\WajWebEnhance]       "pxyupd"="REG_SZ", "1"    [HKEY_LOCAL_MACHINE\SOFTWARE\WajWebEnhance\WajWebEnhance Internet Enhancer]       "aid"="REG_SZ", "3673"       "aid2"="REG_SZ", "none"       "bih"="REG_SZ", "http://www.technologievanhorne.com/proxy/logging"       "dev_reload"="REG_DWORD", 0       "dev_url"="REG_SZ", ""       "install_timestamp"="REG_SZ", "1431017019"       "install_timestamp2"="REG_SZ", ""       "lp"="REG_DWORD", 49252       "mid"="REG_SZ", "c5b0ec3b7e65e886fe8626c9109861b2"       "uid"="REG_SZ", "5ABDF33087498F3919226AD7EE86F367"       "update_url"="REG_SZ", "http://www.technologievanhorne.com/addon/mapping"       "ver"="REG_SZ", "2.31.2.10"    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\WajWebEnhance Service]       "DisplayName"="REG_SZ", "WajWebEnhance Service"       "ErrorControl"="REG_DWORD", 1       "ImagePath"="REG_EXPAND_SZ, "C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe"       "ObjectName"="REG_SZ", "LocalSystem"       "Start"="REG_DWORD", 2       "Type"="REG_DWORD", 16    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]       "ProxyEnable        REG_DWORD, 0 ==> REG_DWORD, 1       "ProxyOverride"="REG_SZ", "<-loopback>"       "ProxyServer"="REG_SZ", "http=127.0.0.1:49252;https=127.0.0.1:49252"    [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings]       "ProxyEnable"="REG_DWORD", 0    [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings]       "ProxyEnable"="REG_DWORD", 0    [HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Internet Settings]       "ProxyEnable"="REG_DWORD", 0    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]       "ProxyEnable        REG_DWORD, 0 ==> REG_DWORD, 1       "ProxyOverride"="REG_SZ", "<-loopback>"       "ProxyServer"="REG_SZ", "http=127.0.0.1:49252;https=127.0.0.1:49252"    [HKEY_CURRENT_USER\Software\WajIEnhance]       "affiliate_id"="REG_SZ", "3673"       "unique_id"="REG_SZ", "5ABDF33087498F3919226AD7EE86F367"    [HKEY_CURRENT_USER\Software\WajWebEnhance]       "affiliate_id"="REG_SZ", "3673"       "unique_id"="REG_SZ", "5ABDF33087498F3919226AD7EE86F367"
Malwarebytes Anti-Malware log:

Malwarebytes Anti-Malwarewww.malwarebytes.orgScan Date: 5/7/2015Scan Time: 6:54:30 PMLogfile: mbamWajWebEnhance.txtAdministrator: YesVersion: 2.01.0.1004Malware Database: v2015.05.07.03Rootkit Database: v2015.04.21.01License: FreeMalware Protection: DisabledMalicious Website Protection: DisabledSelf-protection: DisabledOS: Windows 7 Service Pack 1CPU: x86File System: NTFSUser: MalwarebytesScan Type: Threat ScanResult: CompletedObjects Scanned: 289267Time Elapsed: 11 min, 47 secMemory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: DisabledHeuristics: EnabledPUP: EnabledPUM: EnabledProcesses: 2PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe, 3344, Delete-on-Reboot, [2aa56b255535ec4a7b6a1d4836cfd62a]PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancer.exe, 528, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc]Modules: 3PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\ApiHandlr.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\FiddlerCore.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\Newtonsoft.Json.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], Registry Keys: 5PUP.Optional.Wajam.A, HKLM\SOFTWARE\WajWebEnhance, Quarantined, [b619c8c8acde49ed5b8994d1a36230d0], PUP.Optional.Wajam.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WajWebEnhance Service, Quarantined, [2aa56b255535ec4a7b6a1d4836cfd62a], PUP.Optional.Wajam.A, HKCU\SOFTWARE\WajIEnhance, Quarantined, [8e41563a3456d46271d10ad6bf4433cd], PUP.Optional.Wajam.A, HKCU\SOFTWARE\WajWebEnhance, Quarantined, [1eb1236d7a101323a53ec89d38cd58a8], PUP.Optional.Wajam.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajWebEnhance, Quarantined, [c20df0a0d2b894a2539b861507fca759], Registry Values: 0(No malicious items detected)Registry Data: 0(No malicious items detected)Folders: 8PUP.Optional.Wajam.A, C:\Program Files\Wajam, Quarantined, [c20df0a0d2b894a2539b861507fca759], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Uninstall Wajam, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], Files: 73PUP.Optional.Wajam.A, C:\Users\{username}\Desktop\WajWebEnhance.exe, Quarantined, [814e2070c2c8b680e58bafa11ee88c74], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe, Delete-on-Reboot, [2aa56b255535ec4a7b6a1d4836cfd62a], PUP.Optional.Wajam.A, C:\Program Files\Wajam\uninstall.exe, Quarantined, [c20df0a0d2b894a2539b861507fca759], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\uninstall.exe, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\amazon.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\argos.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\ask.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\bestbuy.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\ebay.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\etsy.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\facebook.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\favicon.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\google.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\homedepot.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\ikea.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\imdb.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\lowes.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\mercado.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\mysearchweb.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\myshopping.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\searchresult.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\sears.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\setting.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\settings.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\shopping.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\target.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\tesco.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\tripadvisor.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\twitter.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\wajam.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\walmart.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\wiki.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\yahoo.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\zalando.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\007290c6eaab8e3f7a895162dbe596bc, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\27a3e026958775027c50df2378a10264, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\2a85c196d0818f619ecfafde37e06f2c, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\7c3d46553fbd6a0c208db3af0a63bb00, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\ApiHandlr.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\FiddlerCore.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\HtmlAgilityPack.dll, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancer.exe, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\lan-proxy-settings.dat, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\makecert.exe, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\Newtonsoft.Json.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\wie, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\WJManifest, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Settings.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\SignIn with Facebook.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\SignIn with Twitter.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Wajam Website.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Ask.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Google.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\IMDb.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Shopping.com.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\TripAdvisor.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Wikipedia.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Yahoo!.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Amazon.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Argos.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Ebay.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Etsy.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\HomeDepot.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Ikea.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Lowe's.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Mercadolivre.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\MyShopping.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Sears.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Target.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Tesco.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Walmart.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Zalando.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Uninstall Wajam\uninstall.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], Physical Sectors: 0(No malicious items detected)(end)
As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.

We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention
Save yourself the hassle and get protected.
Link to post
Share on other sites

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.