PUA

Should I remove “ML/PE-A + Keygen (PUA)”?

Malware Removal

The ML/PE-A + Keygen (PUA) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Keygen (PUA) virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine ML/PE-A + Keygen (PUA)?


File Info:

name: 0C952467774B706F2F1C.mlw
path: /opt/CAPEv2/storage/binaries/4d19594a1ec06b1c14112964d93779159ebf2669db7012576463810265a91c27
crc32: 78860591
md5: 0c952467774b706f2f1c46de7f0038d0
sha1: ee799fdfbc2688b61ed9e9a50a0cf1f3136d00be
sha256: 4d19594a1ec06b1c14112964d93779159ebf2669db7012576463810265a91c27
sha512: 407058f9b8deb7a6885d809e4defe5ff7493bdf7fa24a24d859e793cce2dedd902783d1ab03afd01e86a723ec8c2bdeb305fd459a50a23844351aaa23a9d1d2d
ssdeep: 768:k9nyqWgnLQb4w4b+N0g8hLxL5eAZ9cy80KPaUmWLyjRJkj/I10ypZWIuGDLvNbsF:kyqFQ4+e/htAyssjsjAzuOZUoDRD9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T189535C17F5C28CF6C4561BBC0C0AEBDDF429AA201E1E65A6B9DD0F1ECE38252C5996C1
sha3_384: b765a23337e2ae9c13894614572058bd3578b8fb991bbfb42087af27b1e0b0e84968adf5a2688fc765fc5c8b1d4d1ea1
ep_bytes: 558bec83c4f053b8c8e54000e88361ff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

ML/PE-A + Keygen (PUA) also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebBackDoor.ProRat.3666
FireEyeGeneric.mg.0c952467774b706f
MalwarebytesMalware.Heuristic.1001
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderThetaGen:NN.ZelphiF.34606.eiW@a4asIdp
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
SUPERAntiSpywareHack.Tool/Gen-KeyGen
McAfee-GW-EditionPUP-XHR-BX
Trapminemalicious.high.ml.score
SophosML/PE-A + Keygen (PUA)
SentinelOneStatic AI – Malicious PE
AviraTR/Patched.Ren.Gen2
Antiy-AVLTrojan/Generic.ASMalwS.330C
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeePUP-XHR-BX
APEXMalicious
RisingTrojan.Generic@AI.98 (RDML:upBEAFBPOisCZvitbAoTbA)
IkarusTrojan.Patched
Cybereasonmalicious.fbc268

How to remove ML/PE-A + Keygen (PUA)?

ML/PE-A + Keygen (PUA) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment