PUA

PUA.AgentPMF.S29008315 removal guide

Malware Removal

The PUA.AgentPMF.S29008315 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.AgentPMF.S29008315 virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)

How to determine PUA.AgentPMF.S29008315?


File Info:

name: 5768B81A18BF23660AE5.mlw
path: /opt/CAPEv2/storage/binaries/58f2a53c1f0b616c16aeaaca7dc2f13d5ed777641df3945f28b8235b973a17f6
crc32: 158164F9
md5: 5768b81a18bf23660ae53ded299d2998
sha1: 1ca8e72693589058d833ad142bc8f0231e9139c7
sha256: 58f2a53c1f0b616c16aeaaca7dc2f13d5ed777641df3945f28b8235b973a17f6
sha512: ab631ead261cbe98c259e5abc844deec4246f18558b0a4270043c30c63ad7ee6351eea4afdd51fe46afb6391244009e68d686d07f95e7e8658047733511c7819
ssdeep: 49152:kcGccpccUccL7cc2ccOcc9cc4AcHc3+ck1FQjJBpI5ElaumDtWJHqAlSJYoz5Dlw:kcGccpccUccL7cc2ccOcc9cc4AcHc3+Q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T158B53303618D6367FEAB56B819B2EED518313D4748B6E009C34BFC9DBA33680911B95E
sha3_384: 7ae9b14d185e8748b93da8267d2fc664b3c6e3220d81404e2aa353c2176a7561236a86a0a46473d4a4acad84cc874045
ep_bytes: 81ecd4020000535556576a2033ed5e89
timestamp: 2012-02-24 19:19:59

Version Info:

CompanyName: 百度在线网络技术(北京)有限公司
FileDescription: 百度软件中心助手安装程序
FileVersion: 1.3.0.439
LegalCopyright: Copyright (C) 2013 Baidu Inc.
LegalTrademarks: Baidu
ProductName: 百度软件中心助手
ProductVersion: 1.3.0.439
Translation: 0x0804 0x03a8

PUA.AgentPMF.S29008315 also known as:

LionicAdware.Win32.Agent.2!c
CAT-QuickHealPUA.AgentPMF.S29008315
Cylanceunsafe
AlibabaAdWare:Win32/BScope.2a1e1299
ESET-NOD32a variant of Win32/Baidu.B potentially unwanted
Kasperskynot-a-virus:AdWare.Win32.Agent.xxduwm
NANO-AntivirusTrojan.Win32.Inject1.dqltkm
Antiy-AVLWorm[P2P]/Win32.Polip.a
ViRobotAdware.Baidu.2456240
ZoneAlarmnot-a-virus:AdWare.Win32.Agent.xxduwm
GoogleDetected
VBA32BScope.Trojan.Occamy
MalwarebytesGeneric.Malware/Suspicious
YandexRiskware.Agent!Nbc8DVg5KV4
MaxSecureTrojan.W32.generickdz.94696_252528
DeepInstinctMALICIOUS

How to remove PUA.AgentPMF.S29008315?

PUA.AgentPMF.S29008315 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment