PUA

What is “PUA.PresenokerPMF.S10309254”?

Malware Removal

The PUA.PresenokerPMF.S10309254 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.PresenokerPMF.S10309254 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine PUA.PresenokerPMF.S10309254?


File Info:

name: 0852136D4D725244473A.mlw
path: /opt/CAPEv2/storage/binaries/120c2091969027e4e4fa6c9dcda143016dc1d8f0d0b045178bce02e09153d43f
crc32: 86905A09
md5: 0852136d4d725244473a690d956408c0
sha1: d0ca3d1ae56241f739adc9fee36768df4aae637c
sha256: 120c2091969027e4e4fa6c9dcda143016dc1d8f0d0b045178bce02e09153d43f
sha512: c67f0b1b0cf1adbc4d8601bb416f8d5aae6654629504132e5251483bce9a03f474255ccd266e29a13b4db3413c9762089580bb7d737a0721817a387388b21f02
ssdeep: 384:gkHZxjAiC55juABnVoc4WDf3aol+CoJ0e27mUYzW/3oqHRFa72WNbK:JrciC55juEoc423c27YKjFa7hbK
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T13AC25B126BE6442AC92343B47B3733A6D7BD7B661D904252A3C6AD110FB19E0F13F90B
sha3_384: 13c54e45566fe55a67ee05672a60ba5fa1f1350a75196e25477a79d2a8e3d43bc859c2ef63332ebe875314e669c1598d
ep_bytes: e81b080000e97afeffffcc57565533ff
timestamp: 2016-05-26 04:26:54

Version Info:

0: [No Data]

PUA.PresenokerPMF.S10309254 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
AVGWin32:Malware-gen
CAT-QuickHealPUA.PresenokerPMF.S10309254
SkyhighBehavesLike.Win32.Infected.mh
McAfeeArtemis!0852136D4D72
SangforTrojan.Win32.Agent.Vbow
AvastWin32:Malware-gen
VaristW32/Ulise.CT.gen!Eldorado
Antiy-AVLTrojan/Win32.PossibleThreat
GoogleDetected
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002H0CDD24
RisingTrojan.Generic@AI.100 (RDML:HukAYM6QD0MlnQfr7rIALQ)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS

How to remove PUA.PresenokerPMF.S10309254?

PUA.PresenokerPMF.S10309254 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment