PUA

What is “PUA.AgentFC.S23216220”?

Malware Removal

The PUA.AgentFC.S23216220 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.AgentFC.S23216220 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine PUA.AgentFC.S23216220?


File Info:

name: 2A3ED737F36E28438B61.mlw
path: /opt/CAPEv2/storage/binaries/7b3d2bed496172faabb8ee086209719a1d17e3ba24fba1f70a2f7191c6d11cd3
crc32: 882B1242
md5: 2a3ed737f36e28438b61b7777228c6af
sha1: e17dd657dd9b07f49d306a0c428915bf0b7cda3e
sha256: 7b3d2bed496172faabb8ee086209719a1d17e3ba24fba1f70a2f7191c6d11cd3
sha512: 34d5000ef0413ccf3eb6ab5e790c8d41d318662851496c8ccc2faaeb30e1d421f75b9bb2655bcd5ec82e1509fddcc36cd8f5443a2df48ba01a9aeecc2134b951
ssdeep: 49152:uqo1ipzvylAjWZ0Xq9YLuxMfCV4QRCBadpysgpnG70jvn:uqoezvylAjWZ0Xq9YLuxMfCV4SdysgpT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19EB5AE2123ED8B1BD5EEA7BAA07055288BF6EC013A2ACB5F599076ED1D32741CD40773
sha3_384: 341b717fa7a70c6fb5b64db5a6a9133ff00d0e3db69a09652bd500f467e7a672daf32f879af16beaaad96d4835c9a427
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-06-23 11:44:14

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 3.3.3.3
InternalName: !QAZXSW.exe
LegalCopyright: Telegram @wwwpos
LegalTrademarks:
OriginalFilename: !QAZXSW.exe
ProductName:
ProductVersion: 3.3.3.3
Assembly Version: 3.3.3.3

PUA.AgentFC.S23216220 also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
CAT-QuickHealPUA.AgentFC.S23216220
CyrenW32/Sabsik.U.gen!Eldorado
tehtrisGeneric.Malware
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
FireEyeGeneric.mg.2a3ed737f36e2843
SentinelOneStatic AI – Suspicious PE
CynetMalicious (score: 100)
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZemsilF.34742.mo0@ay6GzMd
AVGWin32:MalwareX-gen [Trj]

How to remove PUA.AgentFC.S23216220?

PUA.AgentFC.S23216220 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment