84,488,480 programs installed

Should I remove WeekaPp?

What percent of users and experts removed it?
86% remove it14% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Reach 0.0012%

Versions

VersionDistribution
4.3.0.1961 4.35%
4.2.0.1938 4.35%
4.2.0.1447 8.70%
4.1.0.1899 4.35%
4.0.0.1253 13.04%
3.3.0.1879 4.35%
3.0.0.1855 4.35%
3.0.0.1391 17.39%
2.3.0.1859 8.70%
2.2.0.1811 4.35%
2.1.0.1705 8.70%
2.0.0.1032 4.35%

WeekaPp

What is WeekaPp?

WeekApp is an adware/malware program designed to deliver advertising in order to generate search revenue.

About  (from InstalleRex-WebPick)

Lay back and get all the best new recommended apps right to your android device on a weekly basis without putting any effort. No more you will have to look for application as now they come right to you. Weekapp! Is a cross browser add-on which will search for the best recommended apps for you using a top edge applicati...  Read more

Overview

WeekaPp is a software program developed by InstalleRex-WebPick. The most common release is 3.0.0.1391, with over 98% of all installations currently using this version. It adds a Browser Helper Object (BHO) to Internet Explorer. The primary executable is named I1UyjY0x2X.exe. A majority of users end up uninstalling this less than a week of it being installed. The setup package generally installs about 18 files and is usually about 608.81 KB (623,420 bytes). Relative to the overall usage of users who have this installed on their PCs, most are running Windows 7 (SP1) and Windows 10. While about 21% of users of WeekaPp come from the United States, it is also popular in Indonesia and Thailand.
  • Malware detected in the program
  • Integrates into the web browser
  • Typically distributed through a pay-per-install bundle
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in WeekaPp.
I1UyjY0x2X.exe (8300c91b40229b42301aebc6d8859907) has been flagged by the following 14 scanners:
Anti-Virus softwareVersionDetection
AVG 2014.0.3598 Skodna.Generic
Clam AntiVirus 0.98/18155 win.Adware.Saveshare-3
Comodo Security 17142 Application.Win32.Agent.~AVL
Dr.Web 9.0.0.0295 Trojan.Crossrider.3
IKARUS anti.virus t3scan.2.0.127 Win32.SuspectCrc
Kingsoft AntiVirus 331020.49267 Win32.Troj.Plugie.a.(kcloud)
Malwarebytes v2013.10.22.04 PUP.Optional.MultiPlug.A
Norman 10.20131022 Suspicious_Gen4.FCNHT
Panda Antivirus 13.10.22.04 Adware/SaveShare
Rising Antivirus 23.00.65.131020 Trojan.Win32.Plugie.a
Sophos 4.93 MultiPlug
Trend Micro 10.465.22 ADW_SAVESHARE
TrendMicro-HouseCall 7.2.295 ADW_SAVESHARE
VIPRE Antivirus 22620 JustPlugIt (fs)
48QNSUy.exe (2f21b030acc94619252a33d36dc2694c) has been flagged by the following 33 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.581476
Agnitum Outpost 5.5.1.3 Adware.MegaSearch!U3F4HYVicxo
AhnLab-V3 2014.01.09.00 Trojan/Win32.Preloader
Avira AntiVir 7.11.124.42 SPR/Tool.494080.4
Antiy-AVL 2.0.3.7 AdWare/Win32.MegaSearch
avast! 8.0.1489.320 Win32:Malware-gen
AVG 13.0.0.3169 Generic5.AKLS
Baidu-International 3.5.1.41473 Adware.Win32.MegaSearch.40
Bitdefender 7.2.5028.0 Application.Generic.581476
Bkav FE 1.3.0.4613 W32.FoltaskmeLTAAJ.Trojan
CAT-QuickHeal 12.00 Adware.Megasearch.at (Not a Virus)
Dr.Web Trojan.Crossrider.31
ESET-NOD32 9264 a variant of Win32/AdWare.MultiPlug.K.gen
Fortinet FortiGate 5.1.147.0 Riskware/MultiPlug_K
F-Secure 11.0.19100.45 Application.Generic.581476
G Data 22 Application.Generic.581476
IKARUS anti.virus T3.1.5.6.0 Win32.Malware
Jiangmin 16.0.100 AdWare/MegaSearch.nyr
K7 AntiVirus 9.175.10766 Riskware ( 0040f01a1 )
K7GW 9.175.10776 Riskware ( 0040f01a1 )
Kaspersky 12.0.0.1221 not-a-virus:AdWare.Win32.MegaSearch.at
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.MegaSearch.at.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.CRXDrop.A
McAfee 5.600.0.1067 Artemis!2F21B030ACC9
McAfee-GW-Edition 2013 Artemis!2F21B030ACC9
MicroWorld-eScan 12.0.250.0 Application.Generic.581476
NANO AntiVirus 0.28.0.57029 Riskware.Win32.MegaSearch.cqxtkw
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Sophos 4.96.0 Generic PUA IC
Trend Micro 9.740.0.1012 TROJ_GEN.F0C2C00LP13
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F0C2C00LP13
Vba32 AntiVirus 3.12.24.3 AdWare.MegaSearch
VIPRE Antivirus 25218 Trojan.Win32.Generic!BT
2QyIgZyTst.exe (297c46f413d3c5c5b46e335adf199c09) has been flagged by the following 29 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Graftor.126730
Agnitum Outpost 5.5.1.3 Adware.MegaSearch!59lpl0fFJ/8
AhnLab-V3 2014.01.25.00 Trojan/Win32.Preloader
Antiy-AVL 2.0.3.7 AdWare/Win32.MegaSearch
AVG 13.0.0.3169 Generic5.AKJG
Baidu-International 3.5.1.41473 Adware.Win32.MegaSearch.45
Bitdefender 7.2.5028.0 Gen:Variant.Adware.Graftor.126730
CAT-QuickHeal 12.00 Adware.Megasearch.at (Not a Virus)
Emsisoft Anti-Malware 3.0.0.596 Gen:Variant.Adware.Graftor.126730 (B)
ESET-NOD32 9333 a variant of Win32/AdWare.MultiPlug.K.gen
Fortinet FortiGate 5.1.147.0 Adware/Megasearch
F-Secure 11.0.19100.45 Gen:Variant.Adware.Graftor.126730
G Data 24 Gen:Variant.Adware.Graftor.126730
IKARUS anti.virus T3.1.5.6.0 Win32.AdWare
Jiangmin 16.0.100 AdWare/MegaSearch.mop
K7 AntiVirus 9.175.10956 Riskware ( 0040eff71 )
K7GW 9.175.10956 Riskware ( 0040eff71 )
Kaspersky 12.0.0.1221 not-a-virus:AdWare.Win32.MegaSearch.at
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 5.600.0.1067 PUP-FFY!297C46F413D3
McAfee-GW-Edition 2013 PUP-FFY!297C46F413D3
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Graftor.126730
Norman 7.03.02 Suspicious_Gen4.FLTYD
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Sophos 4.97.0 MultiPlug
Trend Micro 9.740.0.1012 TROJ_GEN.R0CCC0PAL14
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CCC0PAL14
Vba32 AntiVirus 3.12.24.3 AdWare.MegaSearch
VIPRE Antivirus 25756 Trojan.Win32.Generic!BT
Jv8B_7hrxHl.exe (a0b8b6a6967532631848d298e7947584) has been flagged by the following 26 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.582140
Antiy-AVL 2.0.3.7 AdWare/Win32.MegaSearch
avast! 8.0.1489.320 Win32:Dropper-gen [Drp]
AVG 13.0.0.3169 Generic5.AKJX
Bitdefender 7.2.5028.0 Application.Generic.582140
CAT-QuickHeal 12.00 Adware.Megasearch.at (Not a Virus)
ESET-NOD32 9308 a variant of Win32/AdWare.MultiPlug.K.gen
Fortinet FortiGate 5.1.147.0 Adware/Megasearch
F-Secure 11.0.19100.45 Application.Generic.582140
G Data 24 Application.Generic.582140
IKARUS anti.virus T3.1.5.6.0 Win32.AdWare
Jiangmin 16.0.100 AdWare/MegaSearch.ons
K7 AntiVirus 9.175.10881 Adware ( 00490ca81 )
K7GW 9.175.10881 Adware ( 00490ca81 )
Kaspersky 12.0.0.1221 not-a-virus:AdWare.Win32.MegaSearch.at
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 5.600.0.1067 RDN/Generic PUP.z!do
McAfee-GW-Edition 2013 RDN/Generic PUP.z!do
MicroWorld-eScan 12.0.250.0 Application.Generic.582140
NANO AntiVirus 0.28.0.57029 Riskware.Win32.MegaSearch.csapjj
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Sophos 4.96.0 MultiPlug
Trend Micro 9.740.0.1012 TROJ_GEN.F0C2C00AC14
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F0C2C00AC14
Vba32 AntiVirus 3.12.24.3 AdWare.MegaSearch
VIPRE Antivirus 25566 Trojan.Win32.Generic!BT
C_p249.exe (9c354249e2b00af7362d8eecaee9b2b2) has been flagged by the following 18 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.01.26.00 Adware/Win32.Agent
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
AVG 13.0.0.3169 Generic5.AKUZ
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.40
Bkav FE 1.3.0.4923 W32.DropperMsilB.Trojan
Comodo Security 17676 ApplicUnwnt
ESET-NOD32 9339 a variant of Win32/AdWare.MultiPlug.K.gen
Fortinet FortiGate 5.1.147.0 Riskware/MultiPlug_K
IKARUS anti.virus T3.1.5.6.0 Trojan.SuspectCRC
K7 AntiVirus 9.175.10963 Adware ( 00490ca81 )
K7GW 9.175.10963 Adware ( 00490ca81 )
Malwarebytes 1.75.0.1 PUP.Optional.Multiplug
McAfee 5.600.0.1067 Artemis!9C354249E2B0
McAfee-GW-Edition 2013 Artemis!9C354249E2B0
Panda Antivirus 10.0.3.5 Suspicious file
Symantec 20131.1.5.61 Trojan.Gen.2
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBH05A614
VIPRE Antivirus 25818 Trojan.Win32.Generic!BT
0jDHd.dll (e1d10cccd5dde588af8ee2cb7309523c) has been flagged by the following 14 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.107.132 ADWARE/Adware.A.1051
AVG 13.0.0.3169 Generic5.AHSR
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.40
Bitdefender 7.2 Application.Generic.574554
Comodo Security 17105 ApplicUnwnt
ESET-NOD32 8914 a variant of Win32/Adware.MultiPlug.I
F-Secure 11.0.19100.45 Application.Generic.574554
IKARUS anti.virus T3.1.5.4.0 Win32.SuspectCrc
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.Multiplug
NANO AntiVirus 0.26.0.55366 Trojan.Win32.MultiPlug.chwzkb
Panda Antivirus 10.0.3.5 Suspicious file
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V1008
VIPRE Antivirus 22376 JustPlugIt (fs)
jl.dll (e9b27306a18f18b88945cdf066de2fc9) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
avast! 8.0.1489.320 Win32:BHO-AML [Spy]
AVG 13.0.0.3169 Generic5.AFXS
Bkav FE 1.3.0.4246 HW32.Laneul.tesi
Comodo Security 16996 ApplicUnwnt
Dr.Web Trojan.Crossrider.3
ESET-NOD32 8840 a variant of Win32/Adware.MultiPlug.I
K7 AntiVirus 9.172.9682 Riskware
K7GW 12.7.0.14 Riskware
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 5.600.0.1067 Artemis!E9B27306A18F
McAfee-GW-Edition 2013 Artemis!E9B27306A18F
VIPRE Antivirus 21806 Trojan.Win32.Generic!BT
520970e92799a.dll (05234975b085632d70d89c2f420c5107) has been flagged by the following 7 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2013.07.05.00 Adware/Win32.MegaSearch
Comodo Security 16548 ApplicUnwnt
ESET-NOD32 8529 a variant of Win32/Adware.MultiPlug.I
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.MultiPlug.I.(kcloud)
Sophos 4.90.0 FastSave
Vba32 AntiVirus 3.12.22.2 BScope.Adware.MegaSearch
VIPRE Antivirus 19314 Trojan.Win32.Generic!BT
       View all 154 all detections
WeekaPp has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.

Program detailsProgram details

Displayed publisher: WeekapP
URL: weekapp.net
Installation folder: C:\ProgramData\weekapp
Uninstaller: "C:\ProgramData\WeekaPp\I1UyjY0x2X.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Estimated size: 608.81 KB

Program filesFiles installed by WeekaPp

Program executable:I1UyjY0x2X.exe (Malware detected)
Path:C:\ProgramData\weekapp\I1UyjY0x2X.exe
MD5:8300c91b40229b42301aebc6d8859907
Additional files:
  • (Malware detected) 2QyIgZyTst.exe (by Setup)
  • (Malware detected) 48QNSUy.exe (by Setup)
  • (Malware detected) 75Fw.exe
  • (Malware detected) E87mOr.exe
  • (Malware detected) eDP.exe
  • (Malware detected) I1UyjY0x2X.exe
  • (Malware detected) Jv8B_7hrxHl.exe
  • (Malware detected) Nhkcn.exe
  • (Malware detected) NLiv3qKZ4ke.exe
  • (Malware detected) SyW4Cejfb.exe
  • (Malware detected) TH.exe
  • (Malware detected) C_p249.exe - setup.exe
  • (Malware detected) 0jDHd.dll
  • (Malware detected) 520970e92799a.dll
  • (Malware detected) AnwuFF7_40.dll
  • (Malware detected) c.dll
  • (Malware detected) jl.dll
  • uninstall.exe

Program behaviorsBehaviors exhibited

3 Internet Explorer BHOs
  • 520970e92799a.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'savenashare' with the class of {6754CBE8-FD9F-55AC-60F1-1CA59D326461}.
  • jl.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'SearchNewTab' with the class of {885D1CB3-872A-D62A-A2D7-EC7C7E3B2174}.
  • AnwuFF7_40.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'SearchNewTab' with the class of {E36CA6A6-BEF3-49DA-D819-2B3E30232205}.

How do I remove WeekaPp?

You can uninstall WeekaPp from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program WeekaPp, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove WeekaPp.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by WeekaPp you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 7 (SP1) 52%
Win 7 17%
 
USER ACTIONS
Uninstall it 86%
Keep it 14%
 
COUNTRY POPULARITY
20.83%
United States

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 69.57%
Windows 10 30.43%
Which OS releases does it run on?
Windows 7 Ultimate 30.43%
Windows 7 Home Premium 30.43%
Windows 8 Single Language 8.70%
Windows 8 Pro 8.70%
Windows 8 4.35%
Windows 8 Pro with Media ... 4.35%

Distribution by countryGeography

20.83% of installs come from the United States
Which countries install it?
  United States 20.83%
  Indonesia 16.67%
  Thailand 8.33%
  Netherlands 8.33%
  Australia 4.17%
  Mexico 4.17%
  Taiwan 4.17%
  Spain 4.17%
  DZ 4.17%
  MA 4.17%
  Turkey 4.17%
  Argentina 4.17%
  Italy 4.17%
  Lebanon 4.17%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Hewlett-Packard 27.27%
Acer 22.73%
Lenovo 13.64%
Samsung 9.09%
ASUS 4.55%
Medion 4.55%
Toshiba 4.55%
Sony 4.55%
American Megatrends 4.55%
Dell 4.55%
Common models
HP Pavilion dv7 Notebook ... 14.29%
HP 630 Notebook PC 4.76%
ASUSTeK K42JY 4.76%
Sony VPCCA3S1E 4.76%
Samsung R580/R590 4.76%
LENOVO 20156 4.76%

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.