PUA

PUA.PrepscramPMF.S18331777 removal instruction

Malware Removal

The PUA.PrepscramPMF.S18331777 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.PrepscramPMF.S18331777 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

lip.healthcakes.men
kiss.oatmealscene.loan

How to determine PUA.PrepscramPMF.S18331777?


File Info:

crc32: 1DD9800A
md5: 5101650c2068867dc09c530aeb618ff5
name: 5101650C2068867DC09C530AEB618FF5.mlw
sha1: 11df1b713c5f5c317e51d63968cd4f12e1dfa2c2
sha256: 5b968be65b434e1cfb4513dbcaa34255c18a35e66d8416dc0758cb2e3beec463
sha512: 2265a8b402aa617ba92e2246773b96a34aa6b092324967e52fc31bf3d953190b6c6de877297d7d5fb67ea44cbe188f742264df54f109f4cbd67a660a45a371d3
ssdeep: 12288:TgP2uuFviU0Lh+7uEYG1IXkkjQPI9/OLDzjiXvD4hWJ4CIxr:Ty2uuBuLdZGYDoLD0vcw4Dx
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PUA.PrepscramPMF.S18331777 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.16386
CynetMalicious (score: 100)
CAT-QuickHealPUA.PrepscramPMF.S18331777
ALYacApplication.Agent.BTU
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 00528e801 )
Cybereasonmalicious.c20688
CyrenW32/StartSurf.AE.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GFHN
APEXMalicious
AvastWin32:StartSurf-C [Adw]
ClamAVWin.Malware.Startsurf-6628791-0
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderApplication.Agent.BTU
NANO-AntivirusTrojan.Win32.Vittalia.ezpgho
MicroWorld-eScanApplication.Agent.BTU
TencentMalware.Win32.Gencirc.10b3e16c
Ad-AwareApplication.Agent.BTU
SophosGeneric PUA BB (PUA)
ComodoApplication.Win32.IStartSurf.PS@8c4m91
BitDefenderThetaGen:NN.ZexaF.34170.QyW@aGmOPLli
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
FireEyeGeneric.mg.5101650c2068867d
EmsisoftApplication.Agent.BTU (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Generic.mrxn
AviraHEUR/AGEN.1103306
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataApplication.Agent.BTU
AhnLab-V3PUP/Win32.StartSurf.R225225
Acronissuspicious
McAfeePacked-XP.c!5101650C2068
MAXmalware (ai score=94)
VBA32BScope.Adware.Prepscram
MalwarebytesAdware.IStartSurf
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.B15F (CLASSIC)
YandexTrojan.GenAsa!Fu4OaYgGIHo
IkarusTrojan.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.GFGF!tr
AVGWin32:StartSurf-C [Adw]
Paloaltogeneric.ml

How to remove PUA.PrepscramPMF.S18331777?

PUA.PrepscramPMF.S18331777 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment