PUA

PUA.GenericFC.S7082989 removal

Malware Removal

The PUA.GenericFC.S7082989 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.GenericFC.S7082989 virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine PUA.GenericFC.S7082989?


File Info:

crc32: 200268AF
md5: 8e5079b7c198d0a9dd366dcf119678f9
name: 8E5079B7C198D0A9DD366DCF119678F9.mlw
sha1: 4c94dffe9f7269ae931c15ee0abad3e807b6e33c
sha256: 2d987a8e2c584b8b23a70cc53d704327acb1e90926df1561c9af877092bfd1f4
sha512: 155889970fb87f5130928fe4babb817bc2eb2bde1b90c59799041a61f92c932e581cc44204c5209631f9181703e90c81a39b984028d11569fd226e718944a930
ssdeep: 6144:BMgDS0arrQFMTTDTLHght9G9/YzfdRAK+UduZRqRG2paPv25Mn7KmsBQ7gQ8:BZrATchXG9qdV+TaCv25Mn7KjU
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

PUA.GenericFC.S7082989 also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop6.38561
CynetMalicious (score: 99)
CAT-QuickHealPUA.GenericFC.S7082989
ALYacGeneric.MSIL.Ransomware.Jigsaw.97AB8B37
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojanSpy:MSIL/CoinStealer.0eeff893
K7GWTrojan ( 700000121 )
Cybereasonmalicious.7c198d
ESET-NOD32a variant of MSIL/PSW.CoinStealer.AH
APEXMalicious
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Trojan.SatoshiBypass-6853426-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.MSIL.Ransomware.Jigsaw.97AB8B37
NANO-AntivirusTrojan.Win32.Drop.edvzba
MicroWorld-eScanGeneric.MSIL.Ransomware.Jigsaw.97AB8B37
TencentMalware.Win32.Gencirc.10c9c2b5
Ad-AwareGeneric.MSIL.Ransomware.Jigsaw.97AB8B37
SophosML/PE-A + Troj/Jigsaw-K
BitDefenderThetaGen:NN.ZemsilF.34686.AmW@a0ZfZt
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom.MSIL.JIGSAW.SMB
McAfee-GW-EditionGenericRXBK-OL!8E5079B7C198
FireEyeGeneric.mg.8e5079b7c198d0a9
EmsisoftGeneric.MSIL.Ransomware.Jigsaw.97AB8B37 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.chfbt
AviraHEUR/AGEN.1132047
eGambitUnsafe.AI_Score_100%
MicrosoftTrojanSpy:MSIL/CoinStealer.C!bit
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan.ClipBanker.C
AhnLab-V3Trojan/Win32.RL_Jigsaw.C4306635
McAfeeGenericRXBK-OL!8E5079B7C198
MAXmalware (ai score=89)
VBA32Trojan.MSIL.gen.11
MalwarebytesSpyware.BTCStealer
TrendMicro-HouseCallRansom.MSIL.JIGSAW.SMB
RisingRansom.JigsawLocker!8.52DD (C64:YzY0Osh0VGhleOze)
YandexTrojan.Agent!/6iV9/Zp3HE
IkarusTrojan.MSIL.PSW
FortinetMSIL/Jigsaw.K!tr
AVGWin32:PWSX-gen [Trj]

How to remove PUA.GenericFC.S7082989?

PUA.GenericFC.S7082989 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment