Malware

What is “AdWare.Win32.Wajam.aobn”?

Malware Removal

The AdWare.Win32.Wajam.aobn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.Wajam.aobn virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine AdWare.Win32.Wajam.aobn?


File Info:

crc32: DD1B77DB
md5: 22d5d1bc17fbcfa234163106484cd2c2
name: 22D5D1BC17FBCFA234163106484CD2C2.mlw
sha1: ab17e62671812815f1c3b4eee181655340890098
sha256: 1e129255c8642a74d448c54891639a086ed2ab650e0d16b60102f7653692e4ae
sha512: 9657d36720866fe41d577db7bb6e3d853ef1dd6462463eedb960ed0c58078c8180dac4a9394cd134771235b4fcc91c2645485e65b8e9db5eedfb117c874bdf25
ssdeep: 196608:XfFUycUsRTEQLLOR1ZHJ7D8ayPZbkdB8b:XfFUyEaL5P8/Zbkd8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

AdWare.Win32.Wajam.aobn also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 005296c61 )
LionicAdware.Win32.Wajam.2!c
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.207715
SangforAdware.Win32.Wajam.gen
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaAdWare:Win32/Wajam.bfbebe1d
K7GWAdware ( 005296c61 )
Cybereasonmalicious.c17fbc
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastFileRepMalware
Kasperskynot-a-virus:AdWare.Win32.Wajam.aobn
NANO-AntivirusRiskware.Win32.Zdengo.exbkhi
SophosGeneric Reputation PUA (PUA)
ComodoMalware@#1hgw7iwpgqz06
VIPREWajam
McAfee-GW-EditionBehavesLike.Win32.BadFile.vc
JiangminAdWare.Wajam.btp
WebrootW32.Adware.Installcore
AviraHEUR/AGEN.1111215
eGambitUnsafe.AI_Score_96%
MicrosoftTrojan:Win32/Occamy.C1E
GDataWin32.Trojan.Agent.44GF60
AhnLab-V3Adware/Win32.Wajam.C2353302
McAfeeArtemis!22D5D1BC17FB
MAXmalware (ai score=95)
VBA32AdWare.Wajam
PandaPUP/Generic
TrendMicro-HouseCallTROJ_GEN.R002H07JE21
RisingTrojan.Generic@ML.99 (RDML:kPd4f2ny0Pfl1yHhFqqqfg)
YandexPUA.Zdengo!deieXz4mVg8
FortinetRiskware/Zdengo
AVGFileRepMalware

How to remove AdWare.Win32.Wajam.aobn?

AdWare.Win32.Wajam.aobn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment