PUA

PUAAdvertising:Win32/MiniPopups malicious file

Malware Removal

The PUAAdvertising:Win32/MiniPopups is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUAAdvertising:Win32/MiniPopups virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine PUAAdvertising:Win32/MiniPopups?


File Info:

name: 368BB327D080FD689227.mlw
path: /opt/CAPEv2/storage/binaries/ac3e609d0c57fa245640a18824cd171e431f1742e199c623e43cc3c860d25683
crc32: A5161A2C
md5: 368bb327d080fd68922753f84429e57a
sha1: 17da2f6835733be3806752a9635c8e3dd0a67bcc
sha256: ac3e609d0c57fa245640a18824cd171e431f1742e199c623e43cc3c860d25683
sha512: aff32e0413a9c0447f8c2f946c8bb5e58fe7ac8616ecb15106406cb4376ac023b682fd3005b9d769e382fc9e5384a40206b23d714cc26008d1cd9171cff94d9e
ssdeep: 24576:Ye5ZQ9PKqDFK15Pfs6s4tHyPh+t2wTTxtskQjBM4sY9O8QADYwVQrrOueJdQWY:vPs6sMIcwwTsRMOO8vD/V5JdQWY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T169958E217A42C03BCB5121B14C3DE7AA05ADAB240F7595F7A3CC1B6E6E704D3AE3195B
sha3_384: 9a21ceac73d804b439d929a8409ff3d26d76d899ca1ff7f809bf5beb58fe64080cd842f0baededc66c7f5fdbf90cb37d
ep_bytes: e83a070000e925feffff558bec83257c
timestamp: 2023-03-29 09:37:13

Version Info:

FileDescription: CefView Application
FileVersion: 2.5023.3170.207
InternalName: CefView
LegalCopyright: 版权所有 (C) 2008-2023
OriginalFilename: CefView.exe
ProductName: CefView Application
ProductVersion: 2.5023.3170.207
Translation: 0x0804 0x04b0

PUAAdvertising:Win32/MiniPopups also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.66368713
FireEyeTrojan.GenericKD.66368713
McAfeeArtemis!368BB327D080
MalwarebytesPUP.Optional.ChinAd.DDS
VIPRETrojan.GenericKD.66368713
K7AntiVirusAdware ( 0058a1a01 )
BitDefenderTrojan.GenericKD.66368713
K7GWAdware ( 0058a1a01 )
ArcabitTrojan.Generic.D3F4B4C9
CyrenW32/ABApplication.XFOA-2810
ESET-NOD32a variant of Win32/Ludashi.A potentially unwanted
RisingPUA.Ludashi!8.17698 (CLOUD)
SophosQihoo 360-related low reputation certificate (PUA)
McAfee-GW-EditionArtemis
EmsisoftTrojan.GenericKD.66368713 (B)
WebrootW32.Trojan.GenKD
MAXmalware (ai score=81)
MicrosoftPUAAdvertising:Win32/MiniPopups
GDataTrojan.GenericKD.66368713
GoogleDetected
ALYacTrojan.GenericKD.66368713
DeepInstinctMALICIOUS
VBA32BScope.Adware.Burden
Cylanceunsafe
PandaPUP/Generic
IkarusPUA.Ludashi
MaxSecureAdware.W32.Burden.gen_246358
FortinetRiskware/Ludashi
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove PUAAdvertising:Win32/MiniPopups?

PUAAdvertising:Win32/MiniPopups removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment