PUA

PUP.Optional.AuslogicsDriverUpdater removal

Malware Removal

The PUP.Optional.AuslogicsDriverUpdater is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.AuslogicsDriverUpdater virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Network activity detected but not expressed in API logs

How to determine PUP.Optional.AuslogicsDriverUpdater?


File Info:

name: F7B53969058B4286F6EC.mlw
path: /opt/CAPEv2/storage/binaries/9511f4ae6f169d485d0623b5c95b089078ca7f49d43e0716532c24acddbcfb9a
crc32: 84532C23
md5: f7b53969058b4286f6ecc2023d9860a7
sha1: 74ee726edd789ddec3b769748a72d06a8ce3051b
sha256: 9511f4ae6f169d485d0623b5c95b089078ca7f49d43e0716532c24acddbcfb9a
sha512: a99513b8970b89d5ffbf76f75fad1b4921372ab9ab0cb71942193a092f353438028b2144d564e68654abd8e63c2511703a88b97f96f1b7c09c76b8b30e66e046
ssdeep: 49152:MYuKnMbos8136ifuMAeG/ZZyIVFcI9kN7q7yJQZxSUiIee2tkhF:MHKMbJ8ZGMvssVBhQZ8Uzyw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T174C53316EE95D071ECD649B9880AC029CAB33D298CB611D534A53F2CFF72B975CF42A1
sha3_384: 0708851dff2783ff45a05d96474f6079fe0bfac92b80e0f7cb5921dda73aa8a16de0b6099d39fa016992501e9bd6bce7
ep_bytes: 558bec83c4c453565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName:
FileDescription: Auslogics Driver Updater 1.9.4.0
FileVersion:
LegalCopyright:
ProductName: Auslogics Driver Updater 1.9.4.0
ProductVersion: 1.9.4.0
Translation: 0x0000 0x04b0

PUP.Optional.AuslogicsDriverUpdater also known as:

MicroWorld-eScanApplication.FakeApp.C
FireEyeApplication.FakeApp.C
ALYacApplication.FakeApp.C
Cybereasonmalicious.9058b4
Paloaltogeneric.ml
BitDefenderApplication.FakeApp.C
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
Ad-AwareApplication.FakeApp.C
ComodoApplicUnwnt@#l6li4ehunkyh
EmsisoftApplication.FakeApp.C (B)
MAXmalware (ai score=78)
GDataApplication.FakeApp.C
VBA32Trojan.Wacatac
MalwarebytesPUP.Optional.AuslogicsDriverUpdater

How to remove PUP.Optional.AuslogicsDriverUpdater?

PUP.Optional.AuslogicsDriverUpdater removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment