Categories: PUA

BedsProtected (PUA) removal tips

The BedsProtected (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What BedsProtected (PUA) virus can do?

    How to determine BedsProtected (PUA)?

    
    

    File Info:

    crc32: B0C80059md5: 9ec6926752901fced1cea2e7a83fe547name: 9EC6926752901FCED1CEA2E7A83FE547.mlwsha1: de3be51645bf0ac4950f573c72fa8f49d072b989sha256: 82e9ec639d90dfa7f8c036c500c91e6f07a4a4a26ec6c9131346b11bf0bdda64sha512: 86da897de8ff6b2ac7b663c99f47d9ee35e9fcfe8be085c346bf45658395d360711bd344ab39d3cd67065bdf3877fc113bf3e3b0c30c71eccacc702b115fd995ssdeep: 6144:L+xozdBA3ikQjRnQDetQwBnP9i8fvvuFp:L+NG88fvvstype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0LegalCopyright: Assembly Version: 0.0.0.0InternalName: 4W6Z5XTA.exeFileVersion: 0.0.0.0ProductVersion: 0.0.0.0FileDescription: OriginalFilename: 4W6Z5XTA.exe

    BedsProtected (PUA) also known as:

    Elastic malicious (high confidence)
    Cynet Malicious (score: 100)
    Malwarebytes Spyware.SnakeKeylogger
    Sangfor Trojan.Win32.Save.a
    CrowdStrike win/malicious_confidence_100% (W)
    Cybereason malicious.645bf0
    Cyren W32/A-520088ff!Eldorado
    Symantec ML.Attribute.HighConfidence
    ESET-NOD32 a variant of MSIL/Spy.Agent.AES
    APEX Malicious
    Avast Win32:PWSX-gen [Trj]
    Kaspersky HEUR:Trojan-Spy.MSIL.Stealer.gen
    Sophos BedsProtected (PUA)
    BitDefenderTheta Gen:NN.ZemsilF.34678.ym0@ai6JONe
    McAfee-GW-Edition BehavesLike.Win32.Generic.ft
    FireEye Generic.mg.9ec6926752901fce
    SentinelOne Static AI – Malicious PE
    Avira TR/ATRAPS.Gen
    eGambit Unsafe.AI_Score_89%
    Kingsoft Win32.Troj.Undef.(kcloud)
    Microsoft Trojan:MSIL/SnakeKeylogger.MK!MTB
    AhnLab-V3 Malware/Win32.RL_Generic.C4352713
    McAfee PWS-FCUL!9EC692675290
    VBA32 CIL.HeapOverride.Heur
    Rising Spyware.Snake!1.D022 (CLASSIC)
    Ikarus Win32.Outbreak
    AVG Win32:PWSX-gen [Trj]
    Paloalto generic.ml
    Qihoo-360 HEUR/QVM03.0.94F9.Malware.Gen

    How to remove BedsProtected (PUA)?

    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.
    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Share
    Published by
    Paul Valéry

    Recent Posts

    Should I remove “Client-IRC.Win32.mIRC.616”?

    The Client-IRC.Win32.mIRC.616 is considered dangerous by lots of security experts. When this infection is active,…

    46 seconds ago

    About “Barys.67671” infection

    The Barys.67671 is considered dangerous by lots of security experts. When this infection is active,…

    41 mins ago

    Win32/Olmarik.AOF malicious file

    The Win32/Olmarik.AOF is considered dangerous by lots of security experts. When this infection is active,…

    45 mins ago

    Generic.Sdbot.E6D5958D removal guide

    The Generic.Sdbot.E6D5958D is considered dangerous by lots of security experts. When this infection is active,…

    1 hour ago

    Malware.AI.1318074156 malicious file

    The Malware.AI.1318074156 is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago

    Troj/Agent-BGOG removal instruction

    The Troj/Agent-BGOG is considered dangerous by lots of security experts. When this infection is active,…

    2 hours ago