Wajamu

Publisher Information

Wajamu is a software publisher located in Herzlia, Israel*. The company is a primary distributor of unwanted software.
Remove Wajamu Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
8/25/2013 5:00:00 PM

Valid to:
8/26/2014 4:59:59 PM

Subject:
CN=Wajamu, O=Wajamu, L=Herzlia, S=Israel, C=IL

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
254859747f512412bb92cb81d0c020a7

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Threat.4895337, Wajamu
100.00%

Reason Heuristics
PUP.Wajamu.L, PUP.Wajamu.K, PUP.Wajamu.H, PUP.Wajamu.J, PUP.Wajamu.P, PUP.Wajamu.I, PUP.Wajamu.X, PUP.Installer.Wajamu.J, PUP.Wajam.Wajamu (M)
94.00%

Dr.Web
Adware.Shopper.816, Adware.Shopper.423
26.00%

ESET NOD32
Win32/Toolbar.Perion.J potentially unwanted application, Win64/Toolbar.Perion.B potentially unwanted application, Win32/Toolbar.BitCocktail.B potentially unwanted application
24.00%

Antiy Labs AVL
Trojan/Win32.TSGeneric
20.00%

Baidu Antivirus
Adware.Win32.Wajam, Trojan.Win32.Bitcoinminer, Adware.Win32.BitCocktail
18.00%

ESET NOD32
Win32/Toolbar.BitCocktail (variant)
14.00%

Malwarebytes
PUP.Optional.VBates.A, PUP.Optional.SweetPacks.A
10.00%

avast!
Win64:Adware-gen [Adw]
10.00%

Trend Micro House Call
TROJ_GEN.F47V0609, Suspicious_GEN.F47V0610, Suspicious_GEN.F47V0624, Suspicious_GEN.F47V0630, Suspicious_GEN.F47V0701
10.00%

1 / 68      (Adware)
notifier.exe (Notifications by Wajamu)  (a6d45e8fe0c45a427c2cc4c6198936c9)

2 / 68      (Adware)
plbar.exe  (73d3344f8280bc27c68551d7de019cdb)

2 / 68      (Adware)
nmhclient.exe  (33a068860a6ac07ba534e838cf838729)

5 / 68      (Adware)
extension32.dll  (81391e0177f7f853f89ac488fa6ab20d)

2 / 68      (Adware)
installerhelper.dll  (bf563395148f80109c8af674febde69c)

7 / 68      (Adware)
extension64.dll  (6047ff74d5f44577390893cb1ecbc5ea)

8 / 68      (Adware)
extensionupdaterservice.exe  (1f3750e1ad57627092fda7610493d26e)

2 / 68      (Adware)
prefhelper.exe  (e24427accb0ec148bbad970d77c73749)

2 / 68      (Adware)
installerhelper.dll  (d196a5253c6f4c2af863178c2b59b88c)

6 / 68      (Adware)
extension64.dll  (b4b13bd45dcd100318140d29a22b41a6)

2 / 68      (Adware)
nmhclient.exe  (39f807280fc23a978f2e19f1039d9154)

5 / 68      (Adware)
v-bates.exe (by Wajamu)  (efbbf05c27e939155c74cbd94c177fb3)

5 / 68      (Adware)
extension32.dll  (b4b2543730aac1ac3a36e50d41016287)

2 / 68      (Adware)
prefhelper.exe  (46adcab02f4155ab51b24cf0c7df5597)

6 / 68      (Adware)
extensionupdaterservice.exe  (2fc21ddca3f8b7c07d0c02daf1427931)

6 / 68      (Adware)
v-bates.exe (by Wajamu)  (baca27621ddf43b487b774889790ed2e)

2 / 68      (Adware)
installerhelper.dll  (89c8dac195f306f554a050b93dc41952)

7 / 68      (Adware)
extension64.dll  (4e7e246f75c749abb9ce21bea5a1d397)

5 / 68      (Adware)
extension32.dll  (80dd212285e270636393e462732c8b90)

2 / 68      (Adware)
prefhelper.exe  (b19f85ad0e51cad66c09cacc1e459cf4)

5 / 68      (Adware)
extensionupdaterservice.exe  (cf66ca0b94d9ca6f02aa36f78aca5542)

2 / 68      (Adware)
libinject2.dll  (f77da481749ad567e7db5d4f57dc098c)

2 / 68      (Adware)
libapi2hook.dll  (9b1e3fdbf1c96a9791bce7dc8b26e821)

2 / 68      (Adware)
libredir2.dll  (60b4eb580e470322c5fdd40dbc3f4f23)

2 / 68      (Adware)
notifier.exe (Notifications by Wajamu)  (afe8f17cb9444b2f78681e4cb9a71c9c)

2 / 68      (Adware)
guardsvc.exe (Search Guard by Wajamu)  (257754e4713a1bed11d1d674106d8dc6)

2 / 68      (Adware)
libwinhook.dll  (d706708a257d528a5e4d5db44d5d63a0)

4 / 68      (Adware)
v-bates.exe (by Wajamu)  (370cb1e4fda048b8757eb6236213691c)

5 / 68      (Adware)
extension64.dll  (3e3e109fd6aab5db1234d8ba5b84f793)

2 / 68      (Adware)
nmhclient.exe  (786e1e45d3448875e6fc0b48e8061440)

 
Latest 30 of 73 files

Downloads URLs for files signed by Wajamu.

The following websites host and distribute files published by Wajamu.

Remove Wajamu Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Wajamu by Thawte, Inc. on August 25, 2013 with the serial number '254859747f512412bb92cb81d0c020a7'.