PUA

About “PUABundler:Win32/MSetup” infection

Malware Removal

The PUABundler:Win32/MSetup is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUABundler:Win32/MSetup virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine PUABundler:Win32/MSetup?


File Info:

name: BCF98270C47C3A4E214A.mlw
path: /opt/CAPEv2/storage/binaries/089163a6c3a419388beb9927ed9b17956b59171d49494bb1460c9fdb239efd0c
crc32: B1AEA8C5
md5: bcf98270c47c3a4e214a9d992426525b
sha1: 1651b74fd896b200675399c18314148433235d29
sha256: 089163a6c3a419388beb9927ed9b17956b59171d49494bb1460c9fdb239efd0c
sha512: 45063a5c5397223e372ced157f58ca3ce73902b2d6d019cf96ff36dfc464770e50e709c4975d668c142b903fb0c57f8d9b4b7d3216dc56ddfe43765ba91a2675
ssdeep: 12288:eFGivO96l5p1hgTOPrGYDfJtW7C8z2eYFKYy:eFROY5p1+ydfGCy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T149B4AE12BCA085B3D34211B0DABD5F379ABD8A7453307AC353D41D706A71AE3A23667E
sha3_384: 49af50bedce8a0be81c024c360c652b63b0223c7c8190e5dcddbe516e13b1d70226e653cc156dcc308641105b9028ce5
ep_bytes: e87f0b0000e97afeffff3b0d44804c00
timestamp: 2023-09-21 07:08:31

Version Info:

0: [No Data]

PUABundler:Win32/MSetup also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKDZ.103080
FireEyeTrojan.GenericKDZ.103080
SkyhighArtemis!Trojan
ALYacTrojan.GenericKDZ.103080
MalwarebytesMalware.AI.2358536109
SangforTrojan.Win32.Agent.Vi3q
CrowdStrikewin/grayware_confidence_60% (W)
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.103080
Ad-AwareTrojan.GenericKDZ.103080
EmsisoftTrojan.GenericKDZ.103080 (B)
VIPRETrojan.GenericKDZ.103080
SophosMal/Generic-S
GDataTrojan.GenericKDZ.103080
JiangminDownloader.MPCrow.k
ArcabitTrojan.Generic.D192A8
MicrosoftPUABundler:Win32/MSetup
McAfeeArtemis!BCF98270C47C
MAXmalware (ai score=83)
TrendMicro-HouseCallTROJ_GEN.R002H09LJ23
RisingTrojan.Generic@AI.100 (RDML:4vfnmVGtIX8HPOLE8Hyipg)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenericKDZ.103080!dam
Cybereasonmalicious.fd896b
DeepInstinctMALICIOUS

How to remove PUABundler:Win32/MSetup?

PUABundler:Win32/MSetup removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment