PUA

How to remove “Generic PUA AJ (PUA)”?

Malware Removal

The Generic PUA AJ (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic PUA AJ (PUA) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic PUA AJ (PUA)?


File Info:

crc32: 694C1EDF
md5: b3304185c8e5969337ea9dfbbe898ae3
name: B3304185C8E5969337EA9DFBBE898AE3.mlw
sha1: 0902481959f73c58c5459f5ec446f7ed07f88e90
sha256: 915ede31dc4c1eaadab7ae455fba445852e804869d7ca7a6680fabb69a87b31a
sha512: ebe127c43d2613efc1b986d90cd17e7a336302e62defb5ceac8234967b09e244849aa30f0ebc32e9140ba7e7e4836f7ba1c00852727a9b4f0c83c810acc32e5a
ssdeep: 6144:kXtLiR7u2e/Y2bbn1xm2FrhPS8xrQ4sgVdjFy1PA2:kXtLk7u2eViCK8xk41MPA2
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic PUA AJ (PUA) also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.72282
FireEyeTrojan.GenericKDZ.72282
CylanceUnsafe
SangforMalware
BitDefenderTrojan.GenericKDZ.72282
K7GWTrojan ( 005756291 )
K7AntiVirusTrojan ( 005756291 )
CyrenW32/Emotet.AZP.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Backdoor.Win32.Emotet.gen
AlibabaTrojan:Win32/EmotetCrypt.18f185ad
Ad-AwareTrojan.GenericKDZ.72282
EmsisoftTrojan.GenericKDZ.72282 (B)
F-SecureTrojan.TR/Crypt.Agent.cdmtf
DrWebTrojan.Siggen11.56901
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
SophosGeneric PUA AJ (PUA)
IkarusTrojan-Banker.Emotet
AviraTR/Crypt.Agent.cdmtf
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/EmotetCrypt.PEF!MTB
GridinsoftRansom.Win32.Wacatac.oa!s1
ArcabitTrojan.Generic.D11A5A
ZoneAlarmHEUR:Backdoor.Win32.Emotet.gen
GDataTrojan.GenericKDZ.72282
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.RL_Generic.R361323
McAfeeEmotet-FRR!B3304185C8E5
VBA32Trojan.Emotet
MalwarebytesTrojan.Emotet
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HILQ
TrendMicro-HouseCallTROJ_GEN.R002H0CLT20
TencentWin32.Backdoor.Emotet.Pcrw
FortinetW32/Emotet.HILQ!tr.bdr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.f34

How to remove Generic PUA AJ (PUA)?

Generic PUA AJ (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment