Home Malware Programs Potentially Unwanted Programs (PUPs) WiseEnhance

WiseEnhance

Posted: January 31, 2014

Threat Metric

Ranking: 19,536
Threat Level: 2/10
Infected PCs: 19,578
First Seen: January 31, 2014
Last Seen: February 15, 2025
OS(es) Affected: Windows


WiseEnhance is a potentially unwanted program with adware functionalities that may be installed on a computer system without a PC user's consent. WiseEnhance may invade the computer without any notice and may change the default system and Web browser settings on the PC. WiseEnhance may integrate itself into Google Chrome as a browser extension, on Internet Explorer and Mozilla Firefox it may be inserted as an add-on or plug-in. When installed, WiseEnhance may run automatically every time Windows is started. WiseEnhance may cover the screen of the PC with various annoying ads which may contain sponsored links, if clicked, taking computer users to questionable websites that were designed with the purpose to possibly benefit from clicks on ads and increased web traffic.

Aliases

Generic_r.KI [AVG]GrayWare[AdWare:not-a-virus]/Win32.LinkSwift [Antiy-AVL]Trojan.BPlug.47 [DrWeb]Riskware/BrowseFox [Fortinet]Trojan.BPlug.35 [DrWeb]Artemis!B07977CA2FA3 [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



system32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys File name: {2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys
Size: 61.12 KB (61120 bytes)
MD5: 82a94ade110a2bd17b96959f945138e3
Detection count: 6,108
File type: System file
Mime Type: unknown/sys
Path: system32\drivers
Group: Malware file
Last Updated: December 23, 2020
C:\Program Files (x86)\WiseEnhance\updater.bak File name: updater.bak
Size: 110.08 KB (110080 bytes)
MD5: 4ba2e5d2e6378f688dca786f29eb6096
Detection count: 630
Mime Type: unknown/bak
Path: C:\Program Files (x86)\WiseEnhance\updater.bak
Group: Malware file
Last Updated: October 22, 2021
%PROGRAMFILES%\WiseEnhance\bin\WiseEnhance.BrowserAdapter.exe File name: WiseEnhance.BrowserAdapter.exe
Size: 95.52 KB (95520 bytes)
MD5: cba401243eadadde536108d9bad82501
Detection count: 255
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\WiseEnhance\bin
Group: Malware file
Last Updated: April 29, 2014
%PROGRAMFILES%\WiseEnhance\bin\FilterApp_C.exe File name: FilterApp_C.exe
Size: 238.88 KB (238880 bytes)
MD5: 1d5263fab26915deceae35dd1fc0cce2
Detection count: 94
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\WiseEnhance\bin
Group: Malware file
Last Updated: April 29, 2014
%PROGRAMFILES%\WiseEnhance\bin\WiseEnhance.PurBrowse.exe File name: WiseEnhance.PurBrowse.exe
Size: 239.39 KB (239392 bytes)
MD5: a19bc543e73dbee007afbaa68295f48e
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\WiseEnhance\bin
Group: Malware file
Last Updated: April 29, 2014
%PROGRAMFILES(x86)%\WiseEnhance\WiseEnhanceuninstall.exe File name: WiseEnhanceuninstall.exe
Size: 241.48 KB (241486 bytes)
MD5: db869683b71a76d322188b61a5039ed5
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\WiseEnhance
Group: Malware file
Last Updated: November 30, 2019
%PROGRAMFILES%\WiseEnhance\WiseEnhancebho.dll File name: WiseEnhancebho.dll
Size: 249.63 KB (249632 bytes)
MD5: 6b2aceb4a0566593e425281adbb80339
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\WiseEnhance
Group: Malware file
Last Updated: April 29, 2014
%PROGRAMFILES%\WiseEnhance\updateWiseEnhance.exe File name: updateWiseEnhance.exe
Size: 351 KB (351008 bytes)
MD5: 27217c917fd7982d26d6904845f0b00b
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\WiseEnhance
Group: Malware file
Last Updated: April 29, 2014
%PROGRAMFILES(x86)%\WiseEnhance\WiseEnhance.FirstRun.exe File name: WiseEnhance.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: ef8cb479e77efb478738503689d6ad4c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\WiseEnhance
Group: Malware file
Last Updated: April 29, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{166CBCD9-C1BA-4C39-80B1-DFE36755DB58}{1E73A5A3-EA2B-47BB-9F17-37FDD4341CF1}{bc8c4384-d19c-474b-a298-c90b7e5c5204}{C1FD20E8-8EB4-4EFE-A5FA-FAA2C9A28356}{FF29172A-B371-4E75-B425-186EE0639387}HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{BC8C4384-D19C-474B-A298-C90B7E5C5204}SOFTWARE\Microsoft\Tracing\updateWiseEnhance_RASAPI32SOFTWARE\Microsoft\Tracing\updateWiseEnhance_RASMANCSSOFTWARE\Microsoft\Tracing\WiseEnhance_RASAPI32SOFTWARE\Microsoft\Tracing\WiseEnhance_RASMANCSSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{bc8c4384-d19c-474b-a298-c90b7e5c5204}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BC8C4384-D19C-474B-A298-C90B7E5C5204}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BC8C4384-D19C-474B-A298-C90B7E5C5204}Software\WiseEnhanceSOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{2561d11e-fe3d-4804-bd38-8484b4066cca}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{bc8c4384-d19c-474b-a298-c90b7e5c5204}SOFTWARE\Wow6432Node\WiseEnhanceSYSTEM\ControlSet001\services\eventlog\Application\Update WiseEnhanceSYSTEM\ControlSet001\services\Update WiseEnhanceSYSTEM\ControlSet001\Services\Util WiseEnhanceSYSTEM\ControlSet002\services\eventlog\Application\Update WiseEnhanceSYSTEM\ControlSet002\services\Update WiseEnhanceSYSTEM\ControlSet002\Services\Util WiseEnhanceSYSTEM\CurrentControlSet\services\eventlog\Application\Update WiseEnhanceSYSTEM\CurrentControlSet\services\Update WiseEnhanceSYSTEM\CurrentControlSet\Services\Util WiseEnhanceHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}WiseEnhance

Additional Information

The following directories were created:
%PROGRAMFILES%\WiseEnhance%PROGRAMFILES(x86)%\WiseEnhance
The following URL's were detected:
WiseEnhance
Loading...