Malware

WebToolbar.Win32.Perion.evz malicious file

Malware Removal

The WebToolbar.Win32.Perion.evz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What WebToolbar.Win32.Perion.evz virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine WebToolbar.Win32.Perion.evz?


File Info:

name: 2B01A1756EF1F692BD98.mlw
path: /opt/CAPEv2/storage/binaries/ca0958afbfeff80d58eedc22d1b5c2eb40de1dd9fc776936b2b5be7139bdd2ea
crc32: 7AFA1F90
md5: 2b01a1756ef1f692bd984e5a2997970b
sha1: 3458c18f42ad771d079025e5c6b255ede02baf66
sha256: ca0958afbfeff80d58eedc22d1b5c2eb40de1dd9fc776936b2b5be7139bdd2ea
sha512: d0a62c1b8b5fabf6f8e2cb85739a878af4183613ece6c7107a37bdb5d83d33c026562aeac44f588fe1647bf4ca70c61daa4abc839409560ff290dce86224437f
ssdeep: 98304:yYNLMDfwdn+VnGktLG7Yp6QDjv8wRVTD/cAppOjOMyFOkoGih1OgggP75af78s/A:5S9JY7EPjv8mqBOMNxG41ILf78HzxR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17A760202B651C6B5DA8702300566373D96784EA56B138F8B739CFE7D5F321A05E2B22F
sha3_384: 8853df69a9c112f43839168723bfb0846b1db64ef8179c4324aadd38164008af8b9ea078c5557f6f1d9f319ea657dcb8
ep_bytes: 558bec6aff6850ebab0068bcf04a0064
timestamp: 2013-04-24 03:41:47

Version Info:

0: [No Data]

WebToolbar.Win32.Perion.evz also known as:

BkavW32.AIDetectMalware
FireEyeGeneric.mg.2b01a1756ef1f692
SkyhighBehavesLike.Win32.Dropper.wc
MalwarebytesGeneric.Malware.AI.DDS
ZillyaAdware.MegaSearch.Win32.20208
Cybereasonmalicious.f42ad7
BitDefenderThetaGen:NN.ZexaF.36792.@tZ@aKN@OWg
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Flystudio-9943951-0
Kasperskynot-a-virus:WebToolbar.Win32.Perion.evz
NANO-AntivirusRiskware.Win32.Perion.eixrdb
AvastWin32:Evo-gen [Trj]
F-SecureTrojan:W32/DelfInject.R
Trapminemalicious.moderate.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
VaristW32/Trojan.CLL.gen!Eldorado
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Win32.FlyStudio.a
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmnot-a-virus:WebToolbar.Win32.Perion.evz
GDataWin32.Trojan.PSE.1CJUYU
GoogleDetected
VBA32BScope.Trojan.Encoder
Cylanceunsafe
RisingMalware.Undefined!8.C (TFE:5:F5TQhCk1m9O)
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.PHP!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_70% (D)

How to remove WebToolbar.Win32.Perion.evz?

WebToolbar.Win32.Perion.evz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment