PUA

Should I remove “PUA.TiggrePMF.S8685638”?

Malware Removal

The PUA.TiggrePMF.S8685638 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA.TiggrePMF.S8685638 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Attempts to stop active services
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine PUA.TiggrePMF.S8685638?


File Info:

crc32: EA896CC7
md5: 8b8202ac5313c54d26198106288cdb15
name: 8B8202AC5313C54D26198106288CDB15.mlw
sha1: 89bdabe5f6aa28ba3bc4203aa0a27881cf5b841e
sha256: 6dda0897398410a6ef8a99192c66fc1174d0e9a360ae7a803819ccbeec28f011
sha512: 8a33b0b4a4329c87c40eca77433af88453f42812208a2c67155902fffc7cb02fe5945da93a48bab49cc1f8728e43bb2e2a465a1fa56b9101c28349a42c01f6d5
ssdeep: 3072:4+4N4iebi/3cFHKqvz2mi7wmQmNjRp7FiaKyMzgJWioyXf5UTG97ocEBFQn4jjj:fE8i/sFtoKmNjDFiaQgyyXOCM8Ub
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019, ghjhfkh
InternalName: fyukfuyk.exe
FileVersion: 1.0.5.4
Translation: 0x0841 0x04c4

PUA.TiggrePMF.S8685638 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056a9ad1 )
LionicTrojan.Win32.Zbot.m6l9
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.29937
CynetMalicious (score: 100)
CAT-QuickHealPUA.TiggrePMF.S8685638
ALYacTrojan.Ransom.Sodinokibi
CylanceUnsafe
ZillyaTrojan.Miner.Win32.8893
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaBackdoor:Win32/Tofsee.0b491b1d
K7GWTrojan ( 0056a9ad1 )
Cybereasonmalicious.c5313c
CyrenW32/Kryptik.API.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EION
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
ClamAVWin.Malware.Generic-7366725-0
KasperskyHEUR:Backdoor.Win32.Tofsee.pef
BitDefenderTrojan.GenericKDZ.58963
NANO-AntivirusTrojan.Win32.Miner.gfmyoj
MicroWorld-eScanTrojan.GenericKDZ.58963
TencentWin32.Backdoor.Tofsee.Ecuc
Ad-AwareTrojan.GenericKDZ.58963
SophosMal/Generic-R + Mal/GandCrab-G
ComodoMalware@#1mnd0r0gc7zyo
BitDefenderThetaGen:NN.ZexaF.34236.qu0@aeO8G@k
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SMOKELOAD.SMD2.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.8b8202ac5313c54d
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1126869
Antiy-AVLTrojan/Generic.ASMalwS.2C9B852
MicrosoftTrojan:Win32/Predator.PA!MTB
GDataTrojan.GenericKDZ.58963
AhnLab-V3Trojan/Win32.MalPe.R296107
Acronissuspicious
McAfeePacked-FPH!8B8202AC5313
MAXmalware (ai score=87)
VBA32TrojanPSW.Predator
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SMOKELOAD.SMD2.hp
RisingTrojan.Generic@ML.100 (RDML:x3Wbl//paXDCWc5DZUk5AQ)
YandexTrojan.GenAsa!O/6WQ3LfLQY
IkarusTrojan-Ransom.Crypted007
FortinetW32/GenKryptik.DWIE!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove PUA.TiggrePMF.S8685638?

PUA.TiggrePMF.S8685638 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment