PUA

PUA.AgentIH.S17959527 removal instruction

Malware Removal

The PUA.AgentIH.S17959527 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.AgentIH.S17959527 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine PUA.AgentIH.S17959527?


File Info:

crc32: 8E906C74
md5: ca8cd2aaacea8b6e1b509aa46cebb742
name: CA8CD2AAACEA8B6E1B509AA46CEBB742.mlw
sha1: 7c6ffcee754287430aaed3614b20a52adc711c89
sha256: 24801f842a6f9a0fff489add00b2cb77d7c18db8e1e32af12f073acb5991feea
sha512: 06d46b6412f0d74d35bf5411d413309a71d3a26925ed418f19037120182f74248b40296732d28260149e4a33c1eda7a4da5aef09b2f14506b05ebcb9513b1c34
ssdeep: 49152:XS6huKUqCIFb6Q9Y6IrPDsPGmt4SO+eMVwKFG:9hur+NndAoPGmtGMtG
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1998-2001 Orland Software Corporation
InternalName: DLIMP
FileVersion: 8.1.5.454
CompanyName: Orland Software Corporation
ProductName: Orland WSDL Import Utility
ProductVersion: 8.1.5.454
FileDescription: Orland Type Library Exporter
OriginalFilename: DLIMP.EXE
Translation: 0x0409 0x04e4

PUA.AgentIH.S17959527 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00537eb21 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3557
CynetMalicious (score: 100)
CAT-QuickHealPUA.AgentIH.S17959527
ALYacGen:Variant.Ser.Symmi.274
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1479148
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaTrojan:Win32/Miner.5f2e12e3
K7GWTrojan ( 00537eb21 )
Cybereasonmalicious.aacea8
CyrenW32/S-53492979!Eldorado
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GIXN
APEXMalicious
AvastWin32:ICLoader-X [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ser.Symmi.274
NANO-AntivirusTrojan.Win32.Ekstak.ffkrhs
MicroWorld-eScanGen:Variant.Ser.Symmi.274
TencentTrojan.Win32.Kryptik.gitv
Ad-AwareGen:Variant.Ser.Symmi.274
SophosMal/Generic-S
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34266.@r0@aeFHQGii
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.ca8cd2aaacea8b6e
EmsisoftGen:Variant.Ser.Symmi.274 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.ckncs
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASBOL.C50A
GDataWin32.Application.ICLoader.F
TACHYONTrojan/W32.Agent.2093056.GC
AhnLab-V3Trojan/Win32.Agent.R232007
Acronissuspicious
McAfeePacked-FHK!CA8CD2AAACEA
MAXmalware (ai score=100)
VBA32Trojan.InstallCube
MalwarebytesAdware.ICLoader
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!DiGAOFE8tMM
IkarusPUA.ICLoader
MaxSecureTrojan.Malware.11811237.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:ICLoader-X [Adw]
Paloaltogeneric.ml

How to remove PUA.AgentIH.S17959527?

PUA.AgentIH.S17959527 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment