PUA

How to remove “Generic PUA LL (PUA)”?

Malware Removal

The Generic PUA LL (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic PUA LL (PUA) virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

tjv1.ejie.me
config.ejie.me

How to determine Generic PUA LL (PUA)?


File Info:

crc32: E669505D
md5: c29c6ad908ae1b6cbf2d622dbe86b97a
name: 102219045_c29c6ad908ae1b6cbf2d622dbe86b97a.exe
sha1: bbd832d066ed9263ff3add6bfa41f85316454bb6
sha256: a36bbd171a40246d54b07bd26327635fb594114ea2afb8b254fe60d2711d5068
sha512: 48a8d8839526909b3a57feeb66ea9ad026e6b480d7354e5daee1eebcf24cb5aa562d50087f807e25aae3aa526e9e3153a45bb5a0b191e226064d86531f3b5cec
ssdeep: 196608:UVMqrAGXnTHTfW1SpmOqN0CgmQZYm8wt7e9XF980X0lM1qwwBCBtsF:WAGXss6N0CgmQmwtUXF9CM1BvDsF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2018
InternalName: Clover
FileVersion: 3.4.8.19530
CompanyName: ejie.me
Comments: Clover x5b89x88c5x7a0bx5e8f
ProductName: Clover
ProductVersion: 3.4.8.19530
FileDescription: Clover x5b89x88c5x7a0bx5e8f
OriginalFilename: Clover.exe
Translation: 0x0804 0x03a8

Generic PUA LL (PUA) also known as:

DrWebAdware.Softcnapp.80
FireEyeGeneric.mg.c29c6ad908ae1b6c
McAfeeAdware-Clover
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabAdware.Win32.Burden.2!c
K7AntiVirusAdware ( 005524301 )
SymantecML.Attribute.HighConfidence
APEXMalicious
Kasperskynot-a-virus:HEUR:AdWare.Win32.Burden.gen
AlibabaAdWare:Win32/Softcnapp.35901674
NANO-AntivirusTrojan.Win32.Denes.fswdbw
RisingPUA.Puamson!8.108E8 (CLOUD)
SophosGeneric PUA LL (PUA)
ZillyaAdware.Burden.Win32.41
Invinceaheuristic
McAfee-GW-EditionAdware-Clover
SentinelOneDFI – Malicious PE
CyrenW32/Trojan.GALN-6686
JiangminAdWare.Burden.cw
WebrootW32.Adware.Gen
Endgamemalicious (high confidence)
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Burden.gen
MicrosoftPUA:Win32/Puasson.A!ml
Acronissuspicious
VBA32BScope.Adware.Presenoker
MalwarebytesPUP.Optional.Softcnapp
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Softcnapp.J potentially unwanted
YandexPUA.Burden!
IkarusPUA.Softcnapp
eGambitUnsafe.AI_Score_95%
FortinetAdware/Burden
AVGFileRepMetagen [Adw]
MaxSecureTrojan.Malware.74401166.susgen

How to remove Generic PUA LL (PUA)?

Generic PUA LL (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment