Malware

AdWare.Win32.Wews87.dgh removal instruction

Malware Removal

The AdWare.Win32.Wews87.dgh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.Wews87.dgh virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine AdWare.Win32.Wews87.dgh?


File Info:

crc32: 8096E63A
md5: 83c8cfad94ae9c0884e04ce324dbb728
name: 37yxhj.exe
sha1: 80d5f57cd0483d1737dd930d43e1ed1ecffca3c6
sha256: 23300e9f355be30296a5fdf45cc3794093f1cfb40c7956d200ce36052f1e8ec4
sha512: 1f76b4a499699602718dfe8fd3fefc98519383ce7b5b141650c16fcd623597f2a92ef5b3e2726bb8fa27ecc02a324cc617fdab5e22da54b993432974b1ec080d
ssdeep: 24576:yEeW2DuaFEzm1y8U9smZHDTJxy94RTjs4stgrtx:U3tSq1y8sRTJA94RSstx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4e0ax6d77x4e09x4e03x73a9x7f51x7edcx79d1x6280x6709x9650x516cx53f8
FileVersion: 3.0.0.0
CompanyName: x4e0ax6d77x4e09x4e03x73a9x7f51x7edcx79d1x6280x6709x9650x516cx53f8
ProductName: 37x4f20x5947x8363x8000
ProductVersion: 3.0.0.0
FileDescription: 37x4f20x5947x8363x8000 install
Translation: 0x0804 0x03a8

AdWare.Win32.Wews87.dgh also known as:

CAT-QuickHealTrojan.Agent
McAfeeArtemis!83C8CFAD94AE
CylanceUnsafe
AlibabaAdWare:Win32/Wews87.6a6b8395
K7GWAdware ( 004e2f011 )
K7AntiVirusAdware ( 004e2f011 )
Invinceaheuristic
SymantecSMG.Heur!gen
Kasperskynot-a-virus:AdWare.Win32.Wews87.dgh
ViRobotAdware.Wews87.1074736
AvastWin32:Malware-gen
SophosGeneric PUA IA (PUA)
ComodoApplication.Win32.Wews87.E@7mby71
DrWebProgram.Unwanted.3980
TrendMicroTROJ_GEN.R002C0OF619
McAfee-GW-EditionArtemis!PUP
CyrenW32/Trojan.TFBD-7893
ESET-NOD32a variant of Win32/Wews87.B potentially unwanted
Antiy-AVLGrayWare/Win32.GameBox
MicrosoftPUA:Win32/Puamson.A!ml
ZoneAlarmnot-a-virus:AdWare.Win32.Wews87.dgh
GDataWin32.Trojan.Agent.RRWIKE
VBA32Adware.Wews
TrendMicro-HouseCallTROJ_GEN.R002C0OF619
IkarusAdWare.Wews87
FortinetRiskware/Wews87
AVGWin32:Malware-gen
PandaTrj/CI.A

How to remove AdWare.Win32.Wews87.dgh?

AdWare.Win32.Wews87.dgh removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment