What is WajWebEnhance?
The Malwarebytes research team has determined that WajWebEnhance is adware. These adware applications display advertisements not originating from the sites you are browsing.
How do I know if my computer is affected by WajWebEnhance?
You may see this entry in your list of installed programs:
and these warnings during install:
and you may see this entry in your "Start Menu":
How did WajWebEnhance get on my computer?
Adware applications use different methods for distributing themselves. This particular one was bundled with other software.
How do I remove WajWebEnhance?
Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted program.
- Please download Malwarebytes Anti-Malware to your desktop.
- Double-click mbam-setup-version.exe and follow the prompts to install the program.
- At the end, be sure a check-mark is placed next to the following:
- Enable free trial of Malwarebytes Anti-Malware Premium
- Launch Malwarebytes Anti-Malware
- Then click Finish.
- If an update is found, you will be prompted to download and install the latest version.
- Once the program has loaded, select Scan Now. Or select the Threat Scan from the Scan menu.
- When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
- Restart your computer when prompted to do so.
- No, Malwarebytes' Anti-Malware removes WajWebEnhance completely.
We hope our application and this guide have helped you eradicate this hijacker.
As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the WajWebEnhance adware. �It would have warned you before the rogue could install itself, giving you a chance to stop it before it became too late.
Technical details for experts
You will see these signs in a HijackThis log:
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:49252;https=127.0.0.1:49252 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> O23 - Service: WajWebEnhance Service - Unknown owner - C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exePossible signs in FRST logs:
() C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe () C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancer.exe ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled. ProxyServer: [.DEFAULT] => http=127.0.0.1:49252;https=127.0.0.1:49252 ProxyEnable: [{userid}] => Internet Explorer proxy is enabled. ProxyServer: [{userid}] => http=127.0.0.1:49252;https=127.0.0.1:49252 R2 WajWebEnhance Service; C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe [691200 2015-05-01] () [File not signed] () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance () C:\Program Files\WajWebEnhance () C:\Program Files\Wajam Wajam (HKLM\...\WajWebEnhance) (Version: 2.31.2.10 (i2.6) - WajWebEnhance) <==== ATTENTION () C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\ApiHandlr.dllAlterations made by the installer:
File system details --------------------------------------------- Adds the folder C:\Program Files\Wajam Adds the file uninstall.exe"="5/1/2015 7:27 PM, 883562 bytes, A Adds the folder C:\Program Files\WajWebEnhance Adds the file uninstall.exe"="5/1/2015 7:27 PM, 883562 bytes, A Adds the folder C:\Program Files\WajWebEnhance\Logos Adds the folder C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer Adds the file ApiHandlr.dll"="5/1/2015 7:27 PM, 11776 bytes, A Adds the file FiddlerCore.dll"="4/22/2015 9:23 PM, 370176 bytes, A Adds the file HtmlAgilityPack.dll"="4/22/2015 9:23 PM, 134144 bytes, A Adds the file InternetEnhancer.exe"="5/1/2015 7:27 PM, 276992 bytes, A Adds the file InternetEnhancerService.exe"="5/1/2015 7:27 PM, 691200 bytes, A Adds the file lan-proxy-settings.dat"="5/7/2015 6:44 PM, 2292 bytes, A Adds the file makecert.exe"="4/22/2015 9:23 PM, 55632 bytes, A Adds the file Newtonsoft.Json.dll"="4/22/2015 9:23 PM, 436224 bytes, A Adds the file wie"="5/7/2015 6:44 PM, 100 bytes, A Adds the file WJManifest"="5/7/2015 6:44 PM, 22146 bytes, A Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance Adds the file Settings.lnk"="5/7/2015 6:44 PM, 1226 bytes, A Adds the file SignIn with Facebook.lnk"="5/7/2015 6:44 PM, 1236 bytes, A Adds the file SignIn with Twitter.lnk"="5/7/2015 6:44 PM, 1228 bytes, A Adds the file Wajam Website.lnk"="5/7/2015 6:44 PM, 1198 bytes, A Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search Adds the file Ask.lnk"="5/7/2015 6:44 PM, 1146 bytes, A Adds the file Google.lnk"="5/7/2015 6:44 PM, 1158 bytes, A Adds the file IMDb.lnk"="5/7/2015 6:44 PM, 1158 bytes, A Adds the file Shopping.com.lnk"="5/7/2015 6:44 PM, 1166 bytes, A Adds the file TripAdvisor.lnk"="5/7/2015 6:44 PM, 1178 bytes, A Adds the file Wikipedia.lnk"="5/7/2015 6:44 PM, 1160 bytes, A Adds the file Yahoo!.lnk"="5/7/2015 6:44 PM, 1154 bytes, A Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping Adds the file Amazon.lnk"="5/7/2015 6:44 PM, 1158 bytes, A Adds the file Argos.lnk"="5/7/2015 6:44 PM, 1158 bytes, A Adds the file Ebay.lnk"="5/7/2015 6:44 PM, 1150 bytes, A Adds the file Etsy.lnk"="5/7/2015 6:44 PM, 1150 bytes, A Adds the file HomeDepot.lnk"="5/7/2015 6:44 PM, 1170 bytes, A Adds the file Ikea.lnk"="5/7/2015 6:44 PM, 1150 bytes, A Adds the file Lowe's.lnk"="5/7/2015 6:44 PM, 1154 bytes, A Adds the file Mercadolivre.lnk"="5/7/2015 6:44 PM, 1178 bytes, A Adds the file MyShopping.lnk"="5/7/2015 6:44 PM, 1174 bytes, A Adds the file Sears.lnk"="5/7/2015 6:44 PM, 1154 bytes, A Adds the file Target.lnk"="5/7/2015 6:44 PM, 1158 bytes, A Adds the file Tesco.lnk"="5/7/2015 6:44 PM, 1154 bytes, A Adds the file Walmart.lnk"="5/7/2015 6:44 PM, 1162 bytes, A Adds the file Zalando.lnk"="5/7/2015 6:44 PM, 1162 bytes, A Adds the folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Uninstall Wajam Adds the file uninstall.lnk"="5/7/2015 6:44 PM, 1927 bytes, A Registry details ------------------------------------------ [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\InternetEnhancer_RASAPI32] "ConsoleTracingMask"="REG_DWORD", -65536 "EnableConsoleTracing"="REG_DWORD", 0 "EnableFileTracing"="REG_DWORD", 0 "FileDirectory"="REG_EXPAND_SZ, "%windir%\tracing" "FileTracingMask"="REG_DWORD", -65536 "MaxFileSize"="REG_DWORD", 1048576 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\InternetEnhancer_RASMANCS] "ConsoleTracingMask"="REG_DWORD", -65536 "EnableConsoleTracing"="REG_DWORD", 0 "EnableFileTracing"="REG_DWORD", 0 "FileDirectory"="REG_EXPAND_SZ, "%windir%\tracing" "FileTracingMask"="REG_DWORD", -65536 "MaxFileSize"="REG_DWORD", 1048576 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] "ProxyEnable"="REG_DWORD", 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections] "DefaultConnectionSettings"="REG_BINARY, .......................................................... "SavedLegacySettings"="REG_BINARY, ................................................................ [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajWebEnhance] "DisplayIcon"="REG_SZ", "C:\Program Files\WajWebEnhance\Logos\wajam.ico" "DisplayName"="REG_SZ", "Wajam" "DisplayVersion"="REG_SZ", "2.31.2.10 (i2.6)" "Publisher"="REG_SZ", "WajWebEnhance" "UninstallString"="REG_SZ", "C:\Program Files\Wajam\uninstall.exe" "URLInfoAbout"="REG_SZ", "http://www.technologievanhorne.com" [HKEY_LOCAL_MACHINE\SOFTWARE\WajWebEnhance] "pxyupd"="REG_SZ", "1" [HKEY_LOCAL_MACHINE\SOFTWARE\WajWebEnhance\WajWebEnhance Internet Enhancer] "aid"="REG_SZ", "3673" "aid2"="REG_SZ", "none" "bih"="REG_SZ", "http://www.technologievanhorne.com/proxy/logging" "dev_reload"="REG_DWORD", 0 "dev_url"="REG_SZ", "" "install_timestamp"="REG_SZ", "1431017019" "install_timestamp2"="REG_SZ", "" "lp"="REG_DWORD", 49252 "mid"="REG_SZ", "c5b0ec3b7e65e886fe8626c9109861b2" "uid"="REG_SZ", "5ABDF33087498F3919226AD7EE86F367" "update_url"="REG_SZ", "http://www.technologievanhorne.com/addon/mapping" "ver"="REG_SZ", "2.31.2.10" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\WajWebEnhance Service] "DisplayName"="REG_SZ", "WajWebEnhance Service" "ErrorControl"="REG_DWORD", 1 "ImagePath"="REG_EXPAND_SZ, "C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe" "ObjectName"="REG_SZ", "LocalSystem" "Start"="REG_DWORD", 2 "Type"="REG_DWORD", 16 [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings] "ProxyEnable REG_DWORD, 0 ==> REG_DWORD, 1 "ProxyOverride"="REG_SZ", "<-loopback>" "ProxyServer"="REG_SZ", "http=127.0.0.1:49252;https=127.0.0.1:49252" [HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings] "ProxyEnable"="REG_DWORD", 0 [HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings] "ProxyEnable"="REG_DWORD", 0 [HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Windows\CurrentVersion\Internet Settings] "ProxyEnable"="REG_DWORD", 0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings] "ProxyEnable REG_DWORD, 0 ==> REG_DWORD, 1 "ProxyOverride"="REG_SZ", "<-loopback>" "ProxyServer"="REG_SZ", "http=127.0.0.1:49252;https=127.0.0.1:49252" [HKEY_CURRENT_USER\Software\WajIEnhance] "affiliate_id"="REG_SZ", "3673" "unique_id"="REG_SZ", "5ABDF33087498F3919226AD7EE86F367" [HKEY_CURRENT_USER\Software\WajWebEnhance] "affiliate_id"="REG_SZ", "3673" "unique_id"="REG_SZ", "5ABDF33087498F3919226AD7EE86F367"Malwarebytes Anti-Malware log:
Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 5/7/2015 Scan Time: 6:54:30 PM Logfile: mbamWajWebEnhance.txt Administrator: Yes Version: 2.01.0.1004 Malware Database: v2015.05.07.03 Rootkit Database: v2015.04.21.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 7 Service Pack 1 CPU: x86 File System: NTFS User: Malwarebytes Scan Type: Threat Scan Result: Completed Objects Scanned: 289267 Time Elapsed: 11 min, 47 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 2 PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe, 3344, Delete-on-Reboot, [2aa56b255535ec4a7b6a1d4836cfd62a] PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancer.exe, 528, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc] Modules: 3 PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\ApiHandlr.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\FiddlerCore.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\Newtonsoft.Json.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], Registry Keys: 5 PUP.Optional.Wajam.A, HKLM\SOFTWARE\WajWebEnhance, Quarantined, [b619c8c8acde49ed5b8994d1a36230d0], PUP.Optional.Wajam.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WajWebEnhance Service, Quarantined, [2aa56b255535ec4a7b6a1d4836cfd62a], PUP.Optional.Wajam.A, HKCU\SOFTWARE\WajIEnhance, Quarantined, [8e41563a3456d46271d10ad6bf4433cd], PUP.Optional.Wajam.A, HKCU\SOFTWARE\WajWebEnhance, Quarantined, [1eb1236d7a101323a53ec89d38cd58a8], PUP.Optional.Wajam.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajWebEnhance, Quarantined, [c20df0a0d2b894a2539b861507fca759], Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 8 PUP.Optional.Wajam.A, C:\Program Files\Wajam, Quarantined, [c20df0a0d2b894a2539b861507fca759], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Uninstall Wajam, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], Files: 73 PUP.Optional.Wajam.A, C:\Users\{username}\Desktop\WajWebEnhance.exe, Quarantined, [814e2070c2c8b680e58bafa11ee88c74], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancerService.exe, Delete-on-Reboot, [2aa56b255535ec4a7b6a1d4836cfd62a], PUP.Optional.Wajam.A, C:\Program Files\Wajam\uninstall.exe, Quarantined, [c20df0a0d2b894a2539b861507fca759], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\uninstall.exe, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\amazon.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\argos.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\ask.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\bestbuy.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\ebay.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\etsy.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\facebook.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\favicon.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\google.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\homedepot.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\ikea.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\imdb.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\lowes.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\mercado.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\mysearchweb.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\myshopping.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\searchresult.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\sears.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\setting.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\settings.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\shopping.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\target.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\tesco.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\tripadvisor.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\twitter.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\wajam.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\walmart.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\wiki.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\yahoo.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\Logos\zalando.ico, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\007290c6eaab8e3f7a895162dbe596bc, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\27a3e026958775027c50df2378a10264, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\2a85c196d0818f619ecfafde37e06f2c, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\7c3d46553fbd6a0c208db3af0a63bb00, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\ApiHandlr.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\FiddlerCore.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\HtmlAgilityPack.dll, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\InternetEnhancer.exe, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\lan-proxy-settings.dat, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\makecert.exe, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\Newtonsoft.Json.dll, Delete-on-Reboot, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\wie, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\Program Files\WajWebEnhance\WajWebEnhance Internet Enhancer\WJManifest, Quarantined, [66699cf4bdcd53e3b8b51ab337cc04fc], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Settings.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\SignIn with Facebook.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\SignIn with Twitter.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Wajam Website.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Ask.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Google.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\IMDb.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Shopping.com.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\TripAdvisor.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Wikipedia.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Search\Yahoo!.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Amazon.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Argos.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Ebay.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Etsy.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\HomeDepot.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Ikea.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Lowe's.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Mercadolivre.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\MyShopping.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Sears.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Target.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Tesco.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Walmart.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Explore Social Shopping\Zalando.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WajWebEnhance\Uninstall Wajam\uninstall.lnk, Quarantined, [408f5f315e2c62d4c4aa09c4c73c41bf], Physical Sectors: 0 (No malicious items detected) (end)As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):
- Dynamically Blocks Malware Sites & Servers
- Malware Execution Prevention