PUA Risk

How to remove “PUA.RiskwarePMF.S19892183”?

Malware Removal

The PUA.RiskwarePMF.S19892183 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.RiskwarePMF.S19892183 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine PUA.RiskwarePMF.S19892183?


File Info:

name: 4F6558D4CDC998A947BC.mlw
path: /opt/CAPEv2/storage/binaries/6556895b1e03cdb90f29bbcff8f8ef01845b5653ca8e5ded032d23d39880c8fb
crc32: 001749EB
md5: 4f6558d4cdc998a947bce2e63392a95c
sha1: 1b326ab3f726576eaec7d96ba128acce0e90a8ec
sha256: 6556895b1e03cdb90f29bbcff8f8ef01845b5653ca8e5ded032d23d39880c8fb
sha512: 3b6425b48eb2295f299bbd70556a14a95a520c5c6dfcdc3fa318e4aa8a12fcdaf1188aeb9226b188fcb1e46a504b9572fabb0f28c75a77f9915b0cf04e76a2cb
ssdeep: 1536:PhY/T8JD2eAWAb0QP953pActQ88SYqrbaig9RM6vC2iiHE7YJt/0Id1fhfcAR2JW:Ph8QJXAPjpDQVGp1qt/0o/R2JJnPk
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1BA438C02B1819036C36373B6652BBA58C2FDFA3157729713E79928158F784E1F426B8F
sha3_384: beebb1beed0e48028b5ef37581de4c7e0f277842086b066b9fa98242a74d0af7ab97fcd0cf2b4bd04e783c63eb4f9ed7
ep_bytes: e887030000e97afeffff558bec56ff75
timestamp: 2016-06-02 16:07:18

Version Info:

0: [No Data]

PUA.RiskwarePMF.S19892183 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
CAT-QuickHealPUA.RiskwarePMF.S19892183
McAfeeRDN/Generic.dx
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforSuspicious.Win32.Save.a
CyrenW32/Presenoker.L.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Malware-gen
TrendMicroTROJ_GEN.R002C0PB522
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
SophosGeneric ML PUA (PUA)
Paloaltogeneric.ml
Antiy-AVLGrayWare/Win32.Generic
GridinsoftRansom.Win32.Occamy.sa
AhnLab-V3Malware/Gen.RL_Generic.R304567
MalwarebytesMalware.AI.2087875410
TrendMicro-HouseCallTROJ_GEN.R002C0PB522
RisingTrojan.Occamy!8.F1CD (RDMK:cmRtazq2pHrLGznwaH4H7Sa5LACP)
SentinelOneStatic AI – Malicious PE
FortinetW32/Generic.RXIH!tr
AVGWin32:Malware-gen
PandaTrj/Genetic.gen

How to remove PUA.RiskwarePMF.S19892183?

PUA.RiskwarePMF.S19892183 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment