PUA

PUABundler:Win32/MSetup malicious file

Malware Removal

The PUABundler:Win32/MSetup is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUABundler:Win32/MSetup virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine PUABundler:Win32/MSetup?


File Info:

name: DE30ACE9F58AA77CF79E.mlw
path: /opt/CAPEv2/storage/binaries/85504392f402d99e8161640100f43dd17e1b5003fbc0071a9eb783afb2af5977
crc32: B680854C
md5: de30ace9f58aa77cf79e7bf01123191c
sha1: b4315143520da3eef2d29be55f347f5e961695cf
sha256: 85504392f402d99e8161640100f43dd17e1b5003fbc0071a9eb783afb2af5977
sha512: 49f2ae2e939e51833f05877a9a99df224af31b572b1f7fdb0fa2cf7c9838e8d12d9d80dbf2901720335576e3f506e84a58041c2f78cf74ad95aebcd2b0058d65
ssdeep: 6144:82HRFGHrrhIEOgiO4PQ6hnJHLjDTOo1hsHT0:/FGiLO96l5p1hgT0
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T198748D2268A085F2D35211B4DEBD2F77E6BCCBA4533029C323D81D745671ED7A27292E
sha3_384: 39af9bced72c7b2a0664d4c47d3e5465c345fededf1252383bc80949e2127229f93930b27977f4e7a90a3c4006063b66
ep_bytes:
timestamp: 2023-09-21 08:41:44

Version Info:

0: [No Data]

PUABundler:Win32/MSetup also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKDZ.103080
FireEyeTrojan.GenericKDZ.103080
SkyhighBehavesLike.Win32.Generic.fh
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.GenericKDZ.103080
SangforTrojan.Win32.Agent.Vjep
BitDefenderTrojan.GenericKDZ.103080
EmsisoftTrojan.GenericKDZ.103080 (B)
SophosMal/Generic-S
GDataTrojan.GenericKDZ.103080
GoogleDetected
MAXmalware (ai score=87)
XcitiumHeur.Corrupt.PE@1z141z3
ArcabitTrojan.Generic.D192A8
MicrosoftPUABundler:Win32/MSetup
VaristW32/Kryptik.LJF.gen!Eldorado
ALYacTrojan.GenericKDZ.103080
TrendMicro-HouseCallTROJ_GEN.R002H09AU24
RisingTrojan.Generic@AI.100 (RDML:2bkNZOFcg4e+PFbwlojBMA)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenericKDZ.103080!dam
DeepInstinctMALICIOUS

How to remove PUABundler:Win32/MSetup?

PUABundler:Win32/MSetup removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment