PUA

PUA.Dmnpartner.Gen information

Malware Removal

The PUA.Dmnpartner.Gen is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.Dmnpartner.Gen virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine PUA.Dmnpartner.Gen?


File Info:

name: E2581BFD12CD00A6A61C.mlw
path: /opt/CAPEv2/storage/binaries/5f16406f5277901ea922ca3bf97c7b897bdacc545b164d33f54ac52cef6a92f4
crc32: A98E0F2D
md5: e2581bfd12cd00a6a61c5c02de2fda4a
sha1: d3647864e552b1cf144b6c61ce44b7b749251515
sha256: 5f16406f5277901ea922ca3bf97c7b897bdacc545b164d33f54ac52cef6a92f4
sha512: 4a450cd35f745b4a51eec6448e8dbf2b907aee8b89a4aa86c5a1c7165f0680cc8e44c7a309e0e74de5a73ea73a6a6467789f0c6d782b61dac82a876a78ca0404
ssdeep: 24576:dcFBj1b5quRy55+3O4wYhz/DgK6Jo658NT0:dWV11qr5+3O4RNrgrraI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E80523A7D6A00835F09216B55F48801AEA37BA617F751E6835CC76FB875B7B0C8087CA
sha3_384: 3e21ef8ba5665568fafa8e36996e2017a26f9ddae8468f7b78dcf4624f6f683b7e168f28b738536724880b8bda8fc3b3
ep_bytes: 558bea83c2c453565733c98945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: Program
FileDescription: Prog Setup
FileVersion: 2.8.5.5
LegalCopyright: App internet
ProductName: Prog
ProductVersion: 4.3.1
Translation: 0x0000 0x04b0

PUA.Dmnpartner.Gen also known as:

LionicTrojan.Win32.Generic.mCDi
MicroWorld-eScanApplication.DealAlpha.1.Gen
FireEyeApplication.DealAlpha.1.Gen
CAT-QuickHealPUA.Dmnpartner.Gen
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
Cybereasonmalicious.d12cd0
VirITPUP.Win32.DMN.A
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/InstallCore.Gen.A potentially unwanted
APEXMalicious
ClamAVWin.Malware.Installcore-6954484-0
Kasperskynot-a-virus:Downloader.Win32.InstallMonster.k
BitDefenderApplication.DealAlpha.1.Gen
NANO-AntivirusVirus.InnoSetup.Gen.ccng
ViRobotAdware.Installcore.820808.FZ
AvastWin32:Evo-gen [Trj]
EmsisoftApplication.DealAlpha.1.Gen (B)
F-SecurePotentialRisk.PUA/InstallCore.JF
DrWebTrojan.InstallCore.1903
VIPREApplication.DealAlpha.1.Gen
TrendMicroTROJ_GEN.R002C0PCC23
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Application.InstallCore.EU
JiangminDownloader.InstallMonster.dc
GoogleDetected
AviraPUA/InstallCore.JF
ArcabitApplication.DealAlpha.1.Gen
SUPERAntiSpywarePUP.InstallCore/Variant
ZoneAlarmnot-a-virus:Downloader.Win32.InstallMonster.k
CynetMalicious (score: 100)
AhnLab-V3Adware/Win.Generic.R560671
McAfeeRDN/Generic PUP.x
MAXmalware (ai score=82)
MalwarebytesPUP.Optional.Downloader.DDS
TrendMicro-HouseCallTROJ_GEN.R002C0PCC23
TencentAdware.Win32.InstallCore.ka
MaxSecureAdware.not-a-virus.WIN32.AdWare.DealPly.gen_188964
FortinetW32/Wacatac.B!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (W)

How to remove PUA.Dmnpartner.Gen?

PUA.Dmnpartner.Gen removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment