PUA

Digital River (PUA) removal guide

Malware Removal

The Digital River (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Digital River (PUA) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine Digital River (PUA)?


File Info:

name: 5BB4D9B8CDF90681BFB7.mlw
path: /opt/CAPEv2/storage/binaries/b70159500cc5fbbc4ce9825bcafcace119db1bac0e294c668e5abb5934c0e036
crc32: 5B4CCC33
md5: 5bb4d9b8cdf90681bfb741a3e3c933d4
sha1: 886a9636930a5f61eae4f0ffb71cc45265d97bdf
sha256: b70159500cc5fbbc4ce9825bcafcace119db1bac0e294c668e5abb5934c0e036
sha512: c8d9a871edc93221e5fc2c1da73e043b1a66a2d0b2cf83a6de24beee5e0433e424b162e187704d4a339d511cd2aa432698cd7a23f3b717c6137c24ef6d517a8a
ssdeep: 24576:5g06cm8a44Yp5yqp9osk0koaJnG4boz/HglpJ:68jIU9Lk8aJnGGo0lpJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T100258D2276F2FC3BD97102B1D539D33975A1BCB04870490B62D12B3D5A78942BD3AF6A
sha3_384: 697f8c40ff0654efc8f09f0887c510c95c32d2a44edffb1dbeedf927f86d97381c49f0f88b99bcbf0d61d2e164acf92b
ep_bytes: e822910000e916feffff558bec83ec0c
timestamp: 2009-03-24 17:52:37

Version Info:

CompanyName: Digital River, Inc.
FileDescription: Digital River Download Manager
FileVersion: 1.0.0
InternalName: Digital River Download Manager
LegalCopyright: © Digital River, Inc.
OriginalFilename: DldManager.exe
ProductName: Digital River Download Manager
ProductVersion: 1.0.0
Translation: 0x0409 0x04e4

Digital River (PUA) also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.33291830
FireEyeGeneric.mg.5bb4d9b8cdf90681
ALYacTrojan.GenericKD.33291830
MalwarebytesMalware.AI.2447166566
ZillyaTrojan.Sdum.Win32.2116
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.8cdf90
CyrenW32/S-b757f024!Eldorado
APEXMalicious
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.33291830
SUPERAntiSpywarePUP.DigitalRiver/Variant
Ad-AwareTrojan.GenericKD.33291830
EmsisoftApplication.Downloader (A)
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
SophosDigital River (PUA)
JiangminDownloader.Generic.arpg
AviraHEUR/AGEN.1117547
Antiy-AVLTrojan/Win32.TSGeneric
GridinsoftRansom.Win32.Gen.sa
GDataTrojan.GenericKD.33291830
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.Downloader.C1449029
MAXmalware (ai score=82)
TrendMicro-HouseCallTROJ_GEN.R002H0CKR21
FortinetW32/PossibleThreat

How to remove Digital River (PUA)?

Digital River (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment