PUA

About “PUP.Optional.CrossRider” infection

Malware Removal

The PUP.Optional.CrossRider is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.CrossRider virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • Performs some HTTP requests
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

errors.myserverstat.com

How to determine PUP.Optional.CrossRider?


File Info:

crc32: 73D66E11
md5: 37031256bfafe6eb941fd4c9b23d38db
name: 37031256BFAFE6EB941FD4C9B23D38DB.mlw
sha1: c526180df7c15346442c455a91d80e30db924313
sha256: ca757042558144bcfb389bc0909763e6a6582d64d4dc0e4915a02c1db03c16f9
sha512: 17688510589f0c1a3f59fa591c05e2ab3eca389fbffead28a5f90e3e3924c8b0c14c1c32af0930ba26769d7228ffbdac52e2d9345a8a0df419071e26f6f50a0c
ssdeep: 768:goWY2qyr6PHqBSiFTA6QqttZ8QnyVyHEwmS/EhOmuJDEvVMJ7hFF6tjWuc+NKwG:QpqSYjk8mEw7muS9M/2ncWbsWjcdEbh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PUP.Optional.CrossRider also known as:

LionicTrojan.NSIS.GoogUpdate.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Crossrider.27207
CynetMalicious (score: 100)
ALYacGen:Application.Heur.eqW@lyDd4lgi
CylanceUnsafe
SangforTrojan.Win32.Heuristic.ET
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/GoogUpdate.3a6eccd4
Cybereasonmalicious.6bfafe
BaiduWin32.Adware.CrossRider.a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Toolbar.Crossrider.AW potentially unwanted
APEXMalicious
AvastFileRepMalware
KasperskyTrojan.NSIS.GoogUpdate.lfy
BitDefenderGen:Application.Heur.eqW@lyDd4lgi
NANO-AntivirusTrojan.Win32.Crossrider.dgkauj
MicroWorld-eScanGen:Application.Heur.eqW@lyDd4lgi
TencentNsis.Trojan.Googupdate.Lhmx
Ad-AwareGen:Application.Heur.eqW@lyDd4lgi
SophosGeneric PUA MF (PUA)
ComodoApplication.Win32.InstallCore.GIFI@5j0lo9
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PII21
McAfee-GW-EditionRDN/Generic PUP.x
FireEyeGeneric.mg.37031256bfafe6eb
EmsisoftGen:Application.Heur.eqW@lyDd4lgi (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.NSIS.tr
WebrootPua.Adware.Crossrider
AviraADWARE/CrossRider.Gen
eGambitGeneric.Malware
Antiy-AVLTrojan/Generic.ASMalwS.C0CCE1
MicrosoftTrojan:Win32/Wacatac.A!ml
SUPERAntiSpywarePUP.CrossRider/Variant
GDataGen:Application.Heur.eqW@lyDd4lgi
AhnLab-V3PUP/Win32.CrossRider.R157816
McAfeeRDN/Generic PUP.x
MAXmalware (ai score=70)
VBA32Trojan.NSIS.GoogUpdate
MalwarebytesPUP.Optional.CrossRider
TrendMicro-HouseCallTROJ_GEN.R002C0PII21
RisingTrojan.Generic@ML.100 (RDML:EPKfUpYrto4E3BFN3E2d1g)
IkarusAdWare.Win32.VMDetector
FortinetRiskware/CrossRider
AVGFileRepMalware
Paloaltogeneric.ml

How to remove PUP.Optional.CrossRider?

PUP.Optional.CrossRider removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment