PUA

PUA:Win32/PassShow (file analysis)

Malware Removal

The PUA:Win32/PassShow is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUA:Win32/PassShow virus can do?

  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine PUA:Win32/PassShow?


File Info:

crc32: 7DF9B818
md5: fb09e7ff48517dadf5013bedd473d521
name: crack.exe
sha1: 289a368388b425bb3bd392d45a0f2cfb29defa03
sha256: 10075c94478cb788ad369dd692b0dc968af57499a2a808eab700518aa7ace92f
sha512: 9524917c616de453237bff10acb86512c689d08cb7290b33dfda3febe3de61e737d65a6c09f5c1c35660acf254fd14af703043885649811c3deaf4340d5558e6
ssdeep: 196608:V2TjYI9dg2YK36/h82MyB2lOVYtGmtMWLetxSwhPP1Vadg2YK36/h88:V2T82d6/hqyclWQRitxSwhXF2d6/h7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PUA:Win32/PassShow also known as:

FireEyeGen:Application.Heur.yq0@kibVd8eO
CAT-QuickHealTrojan.Passshow
VIPRETrojan.Win32.Generic!BT
BitDefenderGen:Application.Heur.yq0@kibVd8eO
Invinceaheuristic
CyrenW32/Application.PQWM-4582
APEXMalicious
AvastWin32:Malware-gen
GDataGen:Application.Heur.yq0@kibVd8eO
KasperskyTrojan-PSW.Win32.Stelega.gz
RisingPUA.PassShow!8.103FC (CLOUD)
EmsisoftGen:Application.Heur.yq0@kibVd8eO (B)
ComodoApplicUnwnt@#2k4hlmw0m6ejy
DrWebTool.PassView.1946
MaxSecureWin.MxResIcn.Heur.Gen
MAXmalware (ai score=70)
Antiy-AVLRiskWare[PSWTool]/Win32.NetPass
ArcabitApplication.Heur.E027FE
ZoneAlarmTrojan-PSW.Win32.Stelega.gz
MicrosoftPUA:Win32/PassShow
MalwarebytesRiskWare.PasswordViewer
eGambitUnsafe.AI_Score_100%
FortinetRiskware/NetPass
AVGWin32:Malware-gen
Cybereasonmalicious.f48517
Qihoo-360HEUR/QVM10.1.6522.Malware.Gen

How to remove PUA:Win32/PassShow?

PUA:Win32/PassShow removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment