Categories: PUA

PUA:Win32/Presenoker malicious file

The PUA:Win32/Presenoker is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What PUA:Win32/Presenoker virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine PUA:Win32/Presenoker?


File Info:

crc32: E8E2E78Amd5: c1d384551b585c01b8b05695378d85b0name: asdfg.exesha1: 6cc410c3e7282751113b5d26deadabc8ebe74befsha256: 36716bff0c5f454b406bf226115b01206d74f1cf7386b8dbee75f318707a5dddsha512: fe67f9fe867afe7f07613900f4973b33a27b640db4888613fd6fd7c6d5c94a1a679b47a4d1cbd2f3295f9b17312950369fca98cca9236cb99fce4473a6fb00b6ssdeep: 3072:Qg5w8Rc+JWLMojWxqe3GICiVc4oKBUGm0lrBPtOpSlHlZ0Ds:W6L+wIWpBfm0lipkHlZ0Dtype: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

PUA:Win32/Presenoker also known as:

MicroWorld-eScan Trojan.GenericKD.32748765
FireEye Generic.mg.c1d384551b585c01
McAfee Artemis!C1D384551B58
BitDefender Trojan.GenericKD.32748765
Cybereason malicious.3e7282
BitDefenderTheta Gen:NN.ZemsilF.32253.kmW@ayWjxGb
Symantec ML.Attribute.HighConfidence
GData Trojan.GenericKD.32748765
Kaspersky HEUR:Trojan.Win32.Generic
Ad-Aware Trojan.GenericKD.32748765
Invincea heuristic
McAfee-GW-Edition BehavesLike.Win32.PUPXBZ.cc
SentinelOne DFI – Suspicious PE
Trapmine malicious.high.ml.score
APEX Malicious
Endgame malicious (high confidence)
ZoneAlarm HEUR:Trojan.Win32.Generic
Microsoft PUA:Win32/Presenoker
AhnLab-V3 Trojan/Win32.Agent.C3592160
MAX malware (ai score=81)
Malwarebytes Trojan.Agent.MSIL
ESET-NOD32 a variant of MSIL/Kryptik.TVN
Yandex Trojan.AvsArher.bSFjrR
Ikarus Win32.Outbreak
Fortinet MSIL/Generic!tr
AVG FileRepMalware
CrowdStrike win/malicious_confidence_60% (W)
Qihoo-360 HEUR/QVM03.0.7521.Malware.Gen

How to remove PUA:Win32/Presenoker?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Share
Published by
Paul Valéry

Recent Posts

Should I remove “Malware.AI.2861677099”?

The Malware.AI.2861677099 is considered dangerous by lots of security experts. When this infection is active,…

18 mins ago

Malware.AI.4183435755 information

The Malware.AI.4183435755 is considered dangerous by lots of security experts. When this infection is active,…

59 mins ago

Dropped:Application.Generic.3571726 removal instruction

The Dropped:Application.Generic.3571726 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

What is “Trojan.Generic.35245150”?

The Trojan.Generic.35245150 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Malware.AI.1658877817 removal tips

The Malware.AI.1658877817 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

About “Win32/Pronny.JI” infection

The Win32/Pronny.JI is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago