Adware

Adware:Win32/Wareda malicious file

Malware Removal

The Adware:Win32/Wareda is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Adware:Win32/Wareda virus can do?

  • A process attempted to delay the analysis task.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Queries information on disks, possibly for anti-virtualization

How to determine Adware:Win32/Wareda?


File Info:

crc32: ED8E4143
md5: 06f4025084e516f8f71c3015bcc99113
name: launcher_374.exe
sha1: 9a14dab7ef10a65720d74b7de8cbd15eed0bad6a
sha256: 67a79a1d0bf116a9ef4ce151b1a1b366742dcac4c44031f3a110d89b11b9f6fe
sha512: 6de5902e416148b04f819ea433da42419e1353b5a966335bbe4d28c6cd610ab5af716e92d7aaea840677809daaf78438e07c50e6e239d39e79d57c8806115316
ssdeep: 24576:xtpzPFV18cUYD1WUkvks5Kf5xJQu40/Vg8ue2E7EUkOm13id59SUDMAH:xjbOc9DaAQj0/VpeJ3id5sUDMI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2015-2018
InternalName: x6e38x620f x5b89x88c5x7a0bx5e8f
FileVersion: 1.0.0.374
ProductName: x6e38x620f x5b89x88c5x7a0bx5e8f
ProductVersion: 1.0.0.374
FileDescription: x6e38x620f x5b89x88c5x7a0bx5e8f
OriginalFilename: game setup.exe
Translation: 0x0804 0x03a8

Adware:Win32/Wareda also known as:

MicroWorld-eScanGen:Variant.Johnnie.98199
CAT-QuickHealTrojan.GenericPMF.S4840823
ALYacGen:Variant.Johnnie.98199
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabAdware.Win32.Kuaiba.2!c
SangforMalware
K7AntiVirusAdware ( 004fb8681 )
BitDefenderGen:Variant.Johnnie.98199
K7GWAdware ( 004fb8681 )
Cybereasonmalicious.084e51
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Adware-gen [Adw]
GDataGen:Variant.Johnnie.98199
Kasperskynot-a-virus:AdWare.Win32.Kuaiba.bxs
AlibabaAdWare:Win32/Kuaiba.e2f12958
NANO-AntivirusRiskware.Win32.Kuaiba.fahjxo
Ad-AwareGen:Variant.Johnnie.98199
SophosGeneric PUA JK (PUA)
ComodoApplicUnwnt@#3u8s39bgy8405
F-SecureHeuristic.HEUR/AGEN.1033791
TrendMicroADW_Kauiba
McAfee-GW-EditionGenericRXFV-DA!06F4025084E5
MaxSecureTrojan.Malware.12323226.susgen
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Johnnie.98199 (B)
IkarusPUA.Kuaiba
JiangminAdWare.Kuaiba.bg
WebrootPUA.Gen
AviraHEUR/AGEN.1033791
Antiy-AVLGrayWare[AdWare]/Win32.Kuaiba
Endgamemalicious (high confidence)
ArcabitTrojan.Johnnie.D17F97
ZoneAlarmnot-a-virus:AdWare.Win32.Kuaiba.bxs
MicrosoftAdware:Win32/Wareda
Acronissuspicious
McAfeeGenericRXFV-DA!06F4025084E5
MAXmalware (ai score=100)
VBA32BScope.Trojan.Downloader
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Adware.Kuaiba.G
TrendMicro-HouseCallADW_Kauiba
TencentMalware.Win32.Gencirc.10b08087
YandexPUA.Kuaiba!
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
FortinetRiskware/Kuaiba
BitDefenderThetaGen:NN.ZexaCO.34090.Sv0@amz3Dtmj
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Adware:Win32/Wareda?

Adware:Win32/Wareda removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment