PUA

How to remove “Generic PUA GF (PUA)”?

Malware Removal

The Generic PUA GF (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic PUA GF (PUA) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • Expresses interest in specific running processes
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Generic PUA GF (PUA)?


File Info:

crc32: 59951824
md5: fac79a7d351858bb26d8952d4e541602
name: FAC79A7D351858BB26D8952D4E541602.mlw
sha1: 6572317c0a5026e12ffdd084d06cfff92c25b8bc
sha256: 76a7bd4b483ac39304605d8360114c2a717ad2114f3a229fcc398e86f6033797
sha512: a2e67c0f3205339e6c82a7ca3c9ed4be23e0c6822923e7a97523431cba3034afe2f191f19e94dd8b4fb67549b5350234229cd1e600bf89574d7b8fafe6ee7056
ssdeep: 3072:kNsjnip4XgGOIc+Es+bG1Va/kqjT3ZNd3mncCuU0QNx84t7YitYvm3OXBmC:5iGXN3usqj9Knjtf04tzem300C
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic PUA GF (PUA) also known as:

MicroWorld-eScanTrojan.GenericKD.45151193
FireEyeTrojan.GenericKD.45151193
McAfeeGenericRXND-AB!FAC79A7D3518
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderTrojan.GenericKD.45151193
K7GWTrojan ( 0057530f1 )
K7AntiVirusTrojan ( 0057530f1 )
CyrenW32/Emotet.AZE.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Backdoor.Win32.Emotet.gen
AlibabaTrojan:Win32/EmotetCrypt.c2f7fd22
ViRobotTrojan.Win32.Emotet.208896.E
AegisLabTrojan.Win32.Emotet.L!c
RisingTrojan.Kryptik!1.D06E (CLASSIC)
Ad-AwareTrojan.GenericKD.45151193
EmsisoftTrojan.GenericKD.45151193 (B)
F-SecureTrojan.TR/AD.Emotet.cbaya
TrendMicroTROJ_GEN.R002C0DLT20
McAfee-GW-EditionBehavesLike.Win32.CryptDoma.dc
SophosGeneric PUA GF (PUA)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Emotet.vc
AviraTR/AD.Emotet.cbaya
MAXmalware (ai score=83)
MicrosoftTrojan:Win32/EmotetCrypt.ARJ!MTB
GridinsoftTrojan.Win32.Emotet.oa
ArcabitTrojan.Generic.D2B0F3D9
ZoneAlarmHEUR:Backdoor.Win32.Emotet.gen
GDataTrojan.GenericKD.45151193
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R360499
VBA32Trojan.Emotet
MalwarebytesTrojan.Emotet
ESET-NOD32a variant of Win32/GenKryptik.EZAP
TrendMicro-HouseCallTROJ_GEN.R002C0DLT20
TencentMalware.Win32.Gencirc.10ce2f42
IkarusTrojan-Banker.Emotet
FortinetW32/Emotet.AZE!tr
AVGWin32:CrypterX-gen [Trj]
AvastWin32:CrypterX-gen [Trj]
Qihoo-360Generic/Trojan.3ae

How to remove Generic PUA GF (PUA)?

Generic PUA GF (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment