PUA Risk

PUA.RiskwareRI.S21822022 removal instruction

Malware Removal

The PUA.RiskwareRI.S21822022 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.RiskwareRI.S21822022 virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine PUA.RiskwareRI.S21822022?


File Info:

name: 7A500C6FF9702190A4CF.mlw
path: /opt/CAPEv2/storage/binaries/97ab0b0ec11d9034cdc3dea7617d45f690130bcd230089498d2398647a5da5ab
crc32: 2DFB78DA
md5: 7a500c6ff9702190a4cf342e2e6cfb39
sha1: 002fabefd3218687327de38039e52557c1be6e82
sha256: 97ab0b0ec11d9034cdc3dea7617d45f690130bcd230089498d2398647a5da5ab
sha512: 69d4dc4c7adf692e35b24aeab051a4f633c07b0547d2a5b464c75b520a114f7f1e9620e550abbd264e541198ef111456f554d4cbef864db6d7db6e62ae903b45
ssdeep: 1536:lDLYHHSDuhk6VRKqlQ6Dd05XGSaPtbMKv2+Z2JJpK:lDcjm6Vxe5XG/j72JJpK
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1A1539F03B6419831C1366376697B779D86BCFD2016B1E313E3AE18564F6C0F2F96638A
sha3_384: 855fb5a71e46a0b1e0d6fa32e0c5647bd69c2a73dff1e25793d81001502d3f062d1ba0b9d55ce9c56183d765ee260408
ep_bytes: e887030000e97afeffff558bec56ff75
timestamp: 2016-07-28 13:17:32

Version Info:

0: [No Data]

PUA.RiskwareRI.S21822022 also known as:

LionicTrojan.Win32.Generic.4!c
CAT-QuickHealPUA.RiskwareRI.S21822022
McAfeeArtemis!7A500C6FF970
SangforTrojan.Win32.Save.a
CyrenW32/Presenoker.L.gen!Eldorado
APEXMalicious
AvastWin32:Malware-gen
F-SecureHeuristic.HEUR/AGEN.1317268
McAfee-GW-EditionBehavesLike.Win32.Generic.kh
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1317268
Antiy-AVLGrayWare/Win32.Generic
MicrosoftPUA:Win32/Presenoker
GoogleDetected
AhnLab-V3Malware/Gen.Generic.C2916992
VBA32BScope.Trojan.Ymacco
MalwarebytesFloxif.Virus.FileInfector.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002H0CED23
RisingTrojan.Generic@AI.84 (RDMK:7mkrludFY1O0E/kNNiA+DA)
IkarusTrojan.Agent
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove PUA.RiskwareRI.S21822022?

PUA.RiskwareRI.S21822022 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment