The Generic PUA NG (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
What Generic PUA NG (PUA) virus can do?
z.whorecord.xyz |
a.tomx.xyz |
soft.iyouxia.com |
File Info:
crc32: D63B6A2Amd5: d3602563b35bb21737f6a3c087fa3061name: The.Legend.of.Heroes.Trails.of.Cold.Steel.III.CHS.PATCH.V1.2-ALI213.exesha1: 8cf7ee1b3d34b301210f8be83bde7915b4fa9678sha256: a22603416d6944c3f3afefa69af2a440460f83dfe32e0d9e7534e553e3c2cb57sha512: c2a20b55969e05f15fd04e226d0f798ba01db085b2206a0a513f157caa982165d3312082c35926b27046d65b628aba05e06b9f3441502dd36d6593b8b9e8629fssdeep: 393216:52Ibwhl+A+p1LM/UwF44K3FC/cWKNbYjf1CngHNrclCGjn1j+ay:5zkKp1LM/UwM3FYjwngtIl7jQtype: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressedVersion Info:
LegalCopyright: CopyRight (C) 1999-2013 ALi213.Net All Right ReservedInternalName: x6c49x5316x5b89x88c5x5305FileVersion: 1.0.0.287CompanyName: x6e38x4fa0x7f51ProductName: x6c49x5316x5b89x88c5x5305ProductVersion: 1.0.0.287FileDescription: x6c49x5316x5b89x88c5x5305OriginalFilename: x6c49x5316x5b89x88c5x5305.exeTranslation: 0x0009 0x04b0
Zillya | Dropper.VB.Win32.64952 |
Invincea | heuristic |
Symantec | ML.Attribute.HighConfidence |
ESET-NOD32 | a variant of Win32/Packed.AAuto.A suspicious |
APEX | Malicious |
NANO-Antivirus | Trojan.Win32.Agent.drkald |
DrWeb | Trojan.Click3.12087 |
Fortinet | Riskware/Application |
Trapmine | malicious.moderate.ml.score |
FireEye | Generic.mg.d3602563b35bb217 |
Sophos | Generic PUA NG (PUA) |
Antiy-AVL | RiskWare[RiskTool]/Win32.Agent |
Endgame | malicious (moderate confidence) |
Microsoft | PUA:Win32/Alibox |
Acronis | suspicious |
McAfee | Artemis!FB8F346F024C |
VBA32 | TrojanDropper.Agent |
Malwarebytes | Trojan.Downloader |
Panda | Trj/Genetic.gen |
Rising | PUA.Alibox!8.F63B (CLOUD) |
Yandex | Trojan.Click!JEWKT0yHUxE |
SentinelOne | DFI – Malicious PE |
The Malware.AI.4236857157 is considered dangerous by lots of security experts. When this infection is active,…
The Win32/AutoRun.VB.ALG is considered dangerous by lots of security experts. When this infection is active,…
The Win32/Spy.Virkonni.F is considered dangerous by lots of security experts. When this infection is active,…
The Backdoor.Farfli.AH is considered dangerous by lots of security experts. When this infection is active,…
The Packed.Win32.Klone.ao is considered dangerous by lots of security experts. When this infection is active,…
The NSIS/Injector.CMO is considered dangerous by lots of security experts. When this infection is active,…