PUA

What is “PUP.Optional.DownLoadAdmin.DDS”?

Malware Removal

The PUP.Optional.DownLoadAdmin.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.DownLoadAdmin.DDS virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine PUP.Optional.DownLoadAdmin.DDS?


File Info:

name: 1BD60F52A2C1382EEEC0.mlw
path: /opt/CAPEv2/storage/binaries/b4bf7c9efc1621dec57dcc779414ab807249421a14dd9e802966ea359cea573e
crc32: F1929E1C
md5: 1bd60f52a2c1382eeec015457d76a651
sha1: 57c9808ffeb7d0b6644b1e4c9bceecc25979007c
sha256: b4bf7c9efc1621dec57dcc779414ab807249421a14dd9e802966ea359cea573e
sha512: c970ab8898565315363e7c447f6921df760fbe8d0f09a7e00c4c515f8e9c9f662eafa538f961ebdc892f631016e9f2619397f5ae42818197c6fad7a2fd932a5d
ssdeep: 24576:V5p4q5ZTgi7klmgjjezfgvsaMS74+zfG2cjjRnvT3b:94qO7ergkaMS74+Lc73b
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12505E01675A3C0B2C17200F09E6DDBA28E7EFD711637A9A73BC41A2C1E756E09971B07
sha3_384: e56e2ba1e17311787d415414f046e4205f7399f2045aedc9a5152fe662835dd364d2a8b2de0a6c3ec2ea4e8e6ea32ff2
ep_bytes: 558bec83ec105356576a00ff15089047
timestamp: 2015-03-20 21:00:06

Version Info:

FileDescription: Adobe Flash Player
FileVersion: 3.0.0.88
InternalName: installer_adobe_flash_player_English.exe.exe
LegalCopyright: (c) Install Helper
OriginalFilename: installer_adobe_flash_player_English.exe.exe
ProductName: Adobe Flash Player
ProductVersion: 3.0.0.88
CompanyName: Install Helper
Translation: 0x0409 0x04b0

PUP.Optional.DownLoadAdmin.DDS also known as:

BkavW32.AIDetectMalware
AVGWin32:BundlerX-gen [PUP]
DrWebAdware.Downware.17903
MicroWorld-eScanGen:Variant.Lazy.202249
FireEyeGeneric.mg.1bd60f52a2c1382e
ALYacGen:Variant.Lazy.202249
MalwarebytesPUP.Optional.DownLoadAdmin.DDS
ZillyaTrojan.DownloadAssistGen.Win32.1
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 004c44db1 )
K7GWUnwanted-Program ( 004c44db1 )
CrowdStrikewin/grayware_confidence_70% (D)
BitDefenderThetaAI:Packer.90B7BBBB1F
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/DownloadAssistant.B potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Agent-1376367
KasperskyTrojan.Win32.Diple.hxqj
BitDefenderGen:Variant.Lazy.202249
NANO-AntivirusTrojan.Win32.DownloadHelper.dpgylc
AvastWin32:BundlerX-gen [PUP]
TencentMalware.Win32.Gencirc.11a99cd3
EmsisoftGen:Variant.Lazy.202249 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
VIPREGen:Variant.Lazy.202249
McAfee-GW-EditionBehavesLike.Win32.PdfCrypt.cc
Trapminemalicious.high.ml.score
SophosDownload Assistant (PUA)
SentinelOneStatic AI – Suspicious PE
JiangminDownloader.DownloadAsist.o
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=80)
Antiy-AVLGrayWare/Win32.DownloadAssistant
XcitiumApplication.Win32.DownloadAssistant.S@5msx5i
ArcabitTrojan.Lazy.D31609
ZoneAlarmTrojan.Win32.Diple.hxqj
GDataWin32.Trojan.PSE.1BAF9HO
GoogleDetected
AhnLab-V3PUP/Win.DownloadAssistant.R502175
McAfeeGenericRXTQ-VL!1BD60F52A2C1
Cylanceunsafe
PandaTrj/Genetic.gen
RisingAdware.DownloadAssistant!1.A3BC (CLASSIC)
YandexTrojan.GenAsa!2WJYNv6rGDw
IkarusPUA.DownloadAssistant
MaxSecureTrojan.Malware.209666012.susgen
FortinetRiskware/DownloadAssistant
DeepInstinctMALICIOUS

How to remove PUP.Optional.DownLoadAdmin.DDS?

PUP.Optional.DownLoadAdmin.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment