PUA

PUP.Optional.InboxTB information

Malware Removal

The PUP.Optional.InboxTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.InboxTB virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine PUP.Optional.InboxTB?


File Info:

name: 66E2D44CE59407C7D9C5.mlw
path: /opt/CAPEv2/storage/binaries/cc0d5d9ca233e8f168ad66da04e652234af7d042c9b6a9b2dde19c51c90ae021
crc32: 5D4CE303
md5: 66e2d44ce59407c7d9c51065d7de15f1
sha1: 3f6ec36afb9634186c0124189941c6c2898c8366
sha256: cc0d5d9ca233e8f168ad66da04e652234af7d042c9b6a9b2dde19c51c90ae021
sha512: 08ef8a5ea495fda9114d5d4a86762cf217e8c61b51f97f0439b2dcf3083cdec40a86111e0587a60c38a6246b2ca1e66290c37ee419fc3b3af1ac729ccf19f2f4
ssdeep: 49152:g2obo4UXVX2TuDmliWQxjprQSHqTGuvLcyaIJA39gUT4d:g7o4e2Tuysxlp3SQHN1T4d
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A8B5336BE6A0DCB0C0101CB86B57C2684EA3BDE02D7D40DCBF6E962D4F560B079E6765
sha3_384: a8bb8869574f1243a40010485350bfb50b5d8ebc72e810f795bdc40c5e3666a9a7960fd6dd0b0dcd1262dc576572ec44
ep_bytes: 558bec83c4a453565733c08945c48945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: Inbox.com, Inc.
FileDescription: Inbox EmailNotifier Toolbar Setup
FileVersion: 2.0.0.50
LegalCopyright: copyright © Inbox.com, Inc.
ProductName: Inbox EmailNotifier Toolbar
ProductVersion: 2.0.0.50
Translation: 0x0000 0x04b0

PUP.Optional.InboxTB also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Crawler.1!c
Elasticmalicious (high confidence)
DrWebTool.InstallToolbar.222
FireEyeGeneric.mg.66e2d44ce59407c7
SkyhighArtemis!PUP
McAfeeArtemis!66E2D44CE594
MalwarebytesPUP.Optional.InboxTB
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 00587af91 )
K7GWUnwanted-Program ( 00587af91 )
VirITPUP.Win32.Inbox.A
SymantecPUA.InboxToolbar
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Toolbar.Crawler.E potentially unwanted
CynetMalicious (score: 99)
APEXMalicious
Kasperskynot-a-virus:HEUR:WebToolbar.Win32.Reptile.gen
NANO-AntivirusRiskware.Win32.MusIn.iupfsj
TencentWin32.Trojan.Reptile.Lcnw
EmsisoftApplication.InstallBox (A)
F-SecurePotentialRisk.PUA/Crawler.Gen
TrendMicroTROJ_GEN.R002C0OAV24
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
JiangminWebToolbar.Generic.aw
WebrootPua.Toolbar
GoogleDetected
AviraPUA/Crawler.Gen
Antiy-AVLGrayWare[AdWare]/Win32.Inbox.k
MicrosoftPUAAdvertising:Win32/CrossRider
XcitiumMalware@#2juv2g2e2cclm
ZoneAlarmnot-a-virus:HEUR:WebToolbar.Win32.Reptile.gen
GDataWin32.Application.ToolbarCrawler.A
VaristW32/InboxToolbar.C.gen!Eldorado
AhnLab-V3PUP/Win32.Crawler.C3598453
MAXmalware (ai score=96)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0OAV24
YandexPUA.Toolbar.Crawler!vjQU/QZfBfI
SentinelOneStatic AI – Suspicious PE
MaxSecurenot-a-virus:HEUR:WebToolbar.Win32.Reptile.gen
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_100% (W)

How to remove PUP.Optional.InboxTB?

PUP.Optional.InboxTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment