Malware

AdWare.Win32.Wews87.egp malicious file

Malware Removal

The AdWare.Win32.Wews87.egp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.Wews87.egp virus can do?

  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine AdWare.Win32.Wews87.egp?


File Info:

crc32: 66EBF09B
md5: a7c8e3ce4b34158adeb71de0610c26d6
name: 37liezhan.exe
sha1: 0df435ca6e4f18b480f8475015f57dd2f77b84fb
sha256: da09c838d9debd147142904a62d85748004fa432e0e3d3788d63a841c7b11caa
sha512: 377ab17a98c5ca765121f866a9a8587f40100eca8dfa7415d5400f6e7c99ac4aef8846795ee31fa4ad421fe95f0cabba037d1ff6d15ef4a5cd230922c377223b
ssdeep: 24576:8+Rhk5uCOzjH7Y8YG/WCOnESmAkaF5atl6llgJfkTyuRz2LBG1bT:nTYeWRnESF5c7J8Ty62CT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x4e09x4e03x4e92x5a31x65d7x4e0bxb7x4e0ax6d77x786cx901ax7f51x7edcx79d1x6280x6709x9650x516cx53f8
FileVersion: 3.0.0.0
CompanyName: x4e09x4e03x4e92x5a31x65d7x4e0bxb7x4e0ax6d77x786cx901ax7f51x7edcx79d1x6280x6709x9650x516cx53f8
ProductName: 37x70c8x65a9
ProductVersion: 3.0.0.0
FileDescription: 37x70c8x65a9 install
Translation: 0x0804 0x03a8

AdWare.Win32.Wews87.egp also known as:

CAT-QuickHealApplication.Agent.ZZ5
McAfeeArtemis!A7C8E3CE4B34
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabAdware.Win32.Wews87.2!c
K7AntiVirusAdware ( 004fef751 )
K7GWAdware ( 004fef751 )
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/Wews87.B potentially unwanted
AvastWin32:Malware-gen
GDataWin32.Trojan.Agent.D6W444
Kasperskynot-a-virus:AdWare.Win32.Wews87.egp
APEXMalicious
Endgamemalicious (high confidence)
SophosGeneric PUA MK (PUA)
ComodoApplication.Win32.Wews87.E@7mby71
F-SecureAdware.ADWARE/Wews87.shcqh
DrWebProgram.Unwanted.3980
ZillyaAdware.Wews87.Win32.486
IkarusAdWare.Wews87
AviraProgramFilesDir/config.dll
Antiy-AVLGrayWare/Win32.GameBox
MicrosoftPUA:Win32/Puasson.A!ml
ZoneAlarmnot-a-virus:AdWare.Win32.Wews87.egp
VBA32BScope.Adware.Wews
MalwarebytesAdware.ChinAd
RisingTrojan.Generic@ML.84 (RDML:9rNbfVcWT82J3Agq0Fb9vQ)
eGambitUnsafe.AI_Score_99%
FortinetRiskware/Generic_PUA_AN
AVGWin32:Malware-gen

How to remove AdWare.Win32.Wews87.egp?

AdWare.Win32.Wews87.egp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment