PUA

About “PUP.Optional.Avanquest” infection

Malware Removal

The PUP.Optional.Avanquest is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.Avanquest virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine PUP.Optional.Avanquest?


File Info:

name: 71C873E6001E5AA8CE06.mlw
path: /opt/CAPEv2/storage/binaries/32bceb4a0225524a106ea3c4e515003f0cb9df0c10be34d1d23e056ce12ef6ca
crc32: 0F15DE03
md5: 71c873e6001e5aa8ce06e8b2a9c2c9e4
sha1: d1b71fcb3d660516d9902057783abe9b35245e0b
sha256: 32bceb4a0225524a106ea3c4e515003f0cb9df0c10be34d1d23e056ce12ef6ca
sha512: 435c213db6cfd0ae4272645e88f11dcc480b714b5c33a9ad00927d5fa1c985527516293cbdac2c990970f95a304ecedd4dffb1bcd92c8b3a92c2406f9ffb9df4
ssdeep: 49152:JgjSXSPQK+UHKxY+MB+OK3JTxtFYMmFTt0ePb1ETmAl1YRZzm4QVcu1IUE:JgF+UHBv+OK3BxzYMmDH8EZzdQiuE
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AD263B11B284942FD27B1A379CABD6C4643EBE211A21D80B3E587F4D1F79B81B939713
sha3_384: 4c7bea5bc8ca4cb5b1fa7c6a6e0fb9f27e3f50aa61c6543f5e9556f0aeee8ca0ce9b52feffdb5af2d1df24e424e52ce4
ep_bytes: 558becb9050000006a006a004975f953
timestamp: 2015-06-06 10:25:03

Version Info:

CompanyName: Avanquest Software
FileDescription: Smart Driver Updater
FileVersion: 3.1.0.5
InternalName: Smart Driver Updater
LegalCopyright: Copyright 2015 Avanquest Software
LegalTrademarks: Copyright 2015 Avanquest Software
OriginalFilename: SmartDriverUpdater
ProductName: Smart Driver Updater
ProductVersion: 3.2
Translation: 0x0409 0x04e4

PUP.Optional.Avanquest also known as:

MalwarebytesPUP.Optional.Avanquest
K7AntiVirusAdware ( 004df2c91 )
K7GWAdware ( 004df2c91 )
SymantecPUA.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.SpeedingUpMyPC.AV
SophosGeneric Reputation PUA (PUA)
DrWebProgram.Unwanted.1109
IkarusPUA.SpeedingUpMyPC
MicrosoftPUA:Win32/SpeedingUpMyPC
Cylanceunsafe
RisingAdware.SpeedingUpMyPC!8.1CC (CLOUD)
MaxSecureTrojan.Malware.218692356.susgen
FortinetRiskware/SpeedingUpMyPC
DeepInstinctMALICIOUS

How to remove PUP.Optional.Avanquest?

PUP.Optional.Avanquest removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment