PUA

Generic PUA MK removal

Malware Removal

The Generic PUA MK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic PUA MK virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Anomalous binary characteristics

Related domains:

dl.iwin.com

How to determine Generic PUA MK?


File Info:

crc32: B197536D
md5: 402cbc735e9e9b7b72c0f2c912224f51
name: 402CBC735E9E9B7B72C0F2C912224F51.mlw
sha1: ca9eef661bf6a02e19c636ea8a3151c3ada4d58c
sha256: ddf561a8505bf53a3e82f5c053ec125dd6dc64be364ed3536af71086d5796a44
sha512: 48dede9c0ecbcd57f075d38ac00f88f70ee893a0d65c9aba7182be239380fb503a25774d02a456da9bb05f3611626886bc5eef0f36f1ba36296908d2fd151198
ssdeep: 1536:hLXB65939tY6HBg4sXJSiwhKKS20Ub2nLnV01KxSmiwGOcVf2GL2V:hLk395hYXJSiZKoHLnVx5i0AL2V
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: xa9 iWin inc.
FileVersion: 1.0.2.0
CompanyName: iWin inc.
ProductName: iWin Games
ProductVersion: 1.0.2.0
FileDescription: iWin Games Downloader
Translation: 0x0409 0x0000

Generic PUA MK also known as:

MalwarebytesPUP.Optional.IWin
K7AntiVirusAdware ( 0054f14d1 )
K7GWAdware ( 0054f14d1 )
CyrenW32/Downware.X.gen!Eldorado
CynetMalicious (score: 85)
Kasperskynot-a-virus:HEUR:Downloader.Win32.Generic
AlibabaDownloader:Win32/SigAdware.39e9a974
SophosGeneric PUA MK
AviraGAME/Downloader.Gen8
Antiy-AVLRiskWare[Downloader]/Win32.Agent.hdyt
ZoneAlarmnot-a-virus:HEUR:Downloader.Win32.Generic
VBA32SigAdware.IWININC

How to remove Generic PUA MK?

Generic PUA MK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment