PUA

How to remove “Generic PUA AF (PUA)”?

Malware Removal

The Generic PUA AF (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic PUA AF (PUA) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic PUA AF (PUA)?


File Info:

crc32: E7B4CDB3
md5: eb838a541e04d018699026a3d780c5c6
name: tstudio_setup.exe
sha1: d0a21c6314f67bf2a28efde12a047a88dcc62c4c
sha256: aa601db0c72a269e6d33c7a44f0267ddd616aaad0108d0a9e4bf2bd9f964d2fa
sha512: 1eae7b5bdc842f75bb92815dd3ab81fb67816a675bc97c4742a7cdb26c74f2bb7b1440ddaf3ec675c984d708f2927f7254e7d6451575245ee4c18b52078a9a2e
ssdeep: 196608:LDEMUvcV0IefvmkaLDjusBwffoEdbE2iAIgJ:0DpnwfjNBQowjGw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Desenvolvido por Sofimerc TI
FileVersion:
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Trader Studio
ProductVersion: 1.1.167
FileDescription: Trader Studio Setup
Translation: 0x0000 0x04b0

Generic PUA AF (PUA) also known as:

CMCTrojan.Win32.Hesv!O
McAfeeArtemis!EB838A541E04
CylanceUnsafe
BitDefenderTrojan.GenericKD.42665108
TrendMicroTROJ_GEN.R011C0PC120
SymantecTrojan.Gen.MBT
AvastWin32:Malware-gen
GDataTrojan.GenericKD.42665108
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Generic.70bc54b4
ViRobotTrojan.Win32.Z.Agent.7438134
EmsisoftTrojan.GenericKD.42665108 (B)
McAfee-GW-EditionBehavesLike.Win32.BadFile.wc
Trapminesuspicious.low.ml.score
FireEyeTrojan.GenericKD.42665108
SophosGeneric PUA AF (PUA)
CyrenW32/Trojan.RCXZ-4296
eGambitUnsafe.AI_Score_99%
MAXmalware (ai score=85)
ArcabitTrojan.Generic.D28B0494
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.C!ml
VBA32BScope.Trojan.VB
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R011C0PC120
RisingTrojan.Generic!8.C3 (CLOUD)
FortinetW32/Generic!tr
AVGWin32:Malware-gen

How to remove Generic PUA AF (PUA)?

Generic PUA AF (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment