PUA

Should I remove “Generic PUA GE (PUA)”?

Malware Removal

The Generic PUA GE (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic PUA GE (PUA) virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Generic PUA GE (PUA)?


File Info:

crc32: AD79D2F3
md5: eefe280c0f57d399a24184917417ba06
name: 1006.exe
sha1: 64832fe7c187fce0b3f1b949ca1dc9b64032d88d
sha256: 0e10d21d4f6f2eaee1e33c83167ff9cf65cf428fab54b71d46f1fc269a2452ae
sha512: e234726667ee163a4e7fc98b620445e20a26778ceb352ed4813c5af60cc79fb8727ef1d8d680e99053a6688d4ae7bd1fc8e49da8eb9a847a053ec004b5a2c317
ssdeep: 24576:88PgJZTMHrmsRvNISkOzGknlPqe/WObSIuR8SKfkWWV2Zw/ZuQCRbM:8FJZTBQvSMRn8e/WQSIM81ZBAuQqg
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed, RAR self-extracting archive

Version Info:

0: [No Data]

Generic PUA GE (PUA) also known as:

MicroWorld-eScanGen:Variant.Ursu.713303
FireEyeGen:Variant.Ursu.713303
CylanceUnsafe
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Ursu.713303
K7GWRiskware ( 0040eff71 )
TrendMicroTROJ_GEN.R011C0PLM19
BitDefenderThetaGen:NN.ZedlaF.34090.cmOfaCXrqHii
SymantecTrojan.Gen.MBT
TrendMicro-HouseCallTROJ_GEN.R011C0PLM19
AvastWin32:Malware-gen
GDataGen:Variant.Ursu.713303
AegisLabTrojan.Win32.Ursu.4!c
SophosGeneric PUA GE (PUA)
ComodoMalware@#2maaade5yh767
McAfee-GW-EditionRDN/Generic.dx
EmsisoftGen:Variant.Ursu.713303 (B)
CyrenW32/Trojan.XBKI-2038
MAXmalware (ai score=99)
Antiy-AVLTrojan/Win32.Azden
ArcabitTrojan.Ursu.DAE257
MicrosoftTrojan:Win32/Wacatac.C!ml
TotalDefenseWin32/Susp.PackedProcInject_im
McAfeeArtemis!EEFE280C0F57
VBA32TScope.Malware-Cryptor.SB
RisingTrojan.Azden!8.F0E3 (CLOUD)
IkarusTrojan.Spy
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
Cybereasonmalicious.c0f57d
Qihoo-360Generic/HEUR/QVM11.1.B65F.Malware.Gen

How to remove Generic PUA GE (PUA)?

Generic PUA GE (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment