PUA

PUADlManager:Win32/Snackarcin removal instruction

Malware Removal

The PUADlManager:Win32/Snackarcin is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUADlManager:Win32/Snackarcin virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the embedded win api malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine PUADlManager:Win32/Snackarcin?


File Info:

name: 81C1DE1B3E60953699E5.mlw
path: /opt/CAPEv2/storage/binaries/09f8d16d1f23730a44d8819416334685a9d0551b815bf801b588b6fe488812d7
crc32: C0B148E0
md5: 81c1de1b3e60953699e5beaaed1280ff
sha1: c3a866a16a0e8a7c3012640d1a24e3a5b02f0fd4
sha256: 09f8d16d1f23730a44d8819416334685a9d0551b815bf801b588b6fe488812d7
sha512: 531ff84bc65d2e16ddd6d8ea8da7c73d2343f3f8845dca57f5edb4a6b6b55139e6e3cc587b0fdf2a3786ecf977b56973fed3f5c8c968279616960fed195ada72
ssdeep: 196608:gM4mWpUGhZcniRH4r/z/7/NhAelNe8HOPJTHPU:x4LpnFH4r/rJSoyTHPU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A77623A0B9DE3868F079957107D7EA7B974DBDD8A0264F3B17043287AB72E423E45D20
sha3_384: 856f4c4aa85961cc325a3fa79fc7ba6f7c1921cea23928748184814cf435862b0d7134033bbca8c49f6f4876575cc86d
ep_bytes: 6801704901e801000000c3c3f57aecb1
timestamp: 2023-07-06 15:07:43

Version Info:

CompanyName: Screeching Agreement Solutions
FileDescription: Screeching Agreement
FileVersion: 18.5.2.16
LegalCopyright: Copyright (c) 2022 Screeching Agreement Solutions
OriginalFilename: ScreechingAgreementApplication.exe
ProductName: Screeching Agreement
ProductVersion: 18.5.2.16
Translation: 0x0409 0x04e4

PUADlManager:Win32/Snackarcin also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Generic.2!c
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Dropper.vc
McAfeeArtemis!81C1DE1B3E60
MalwarebytesGeneric.Malware/Suspicious
SangforTrojan.Win32.Agent.Vp5a
CrowdStrikewin/malicious_confidence_70% (W)
BitDefenderThetaGen:NN.ZexaF.36802.@F0aambyrYdi
SymantecML.Attribute.HighConfidence
APEXMalicious
F-SecureAdware.ADWARE/Adware.Gen
Trapminemalicious.high.ml.score
SentinelOneStatic AI – Suspicious PE
AviraADWARE/Adware.Gen
Antiy-AVLGrayWare[AdWare]/Win32.Snackarcin
MicrosoftPUADlManager:Win32/Snackarcin
CynetMalicious (score: 99)
Cylanceunsafe
FortinetRiskware/Application
DeepInstinctMALICIOUS
alibabacloudVirTool:Win/Obfuscate.SMC.Hep(dyn)

How to remove PUADlManager:Win32/Snackarcin?

PUADlManager:Win32/Snackarcin removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment