PUA

About “PUP.Optional.MediaArena” infection

Malware Removal

The PUP.Optional.MediaArena is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.MediaArena virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine PUP.Optional.MediaArena?


File Info:

name: 97D39D090A87A4CA4DE0.mlw
path: /opt/CAPEv2/storage/binaries/7c5a22744f4bbb646a611928cfdb06660bab0efdf9bc7f877bf5d794c0085aa1
crc32: 21BDE124
md5: 97d39d090a87a4ca4de0eedf3e15b1d1
sha1: 65e1309f3f55e6ead5bf58559f7a0fcae3a9d755
sha256: 7c5a22744f4bbb646a611928cfdb06660bab0efdf9bc7f877bf5d794c0085aa1
sha512: a5b80e760c6e496be77858ad2cea0ce9f6b4a1d8bb6bf942a8a647ccfccc4c29b1f5f768f2cd45a1b07b0ae25b64a12839a50ec96b67a2416c52fe5a482e1cfd
ssdeep: 196608:lPXcwtAef5lCWe+cTBhs7BJ/3UykSImOiFUcf:lPX1XCBCQykSbvnf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T198964AB27FF40509D1D1337182B627B24790EF2488F542471A927FAD72B2ACAD673D1A
sha3_384: e4311532004dd1fc838025bf29b1fac9f3dd7a8ffb0a719baa12431f96a5cddf4a19eb557b81c93c3760bcf700fe3dc7
ep_bytes: ff250020400000000000000000000000
timestamp: 2099-10-01 17:32:13

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: FreePDFPlusInstallationWizard
FileVersion: 1.0.0.0
InternalName: FreePDFPlusInstallationWizard.exe
LegalCopyright: Copyright © 2023
LegalTrademarks:
OriginalFilename: FreePDFPlusInstallationWizard.exe
ProductName: FreePDFPlusInstallationWizard
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

PUP.Optional.MediaArena also known as:

MicroWorld-eScanGen:Variant.Marsilia.103611
ESET-NOD32a variant of MSIL/MediaArena.E potentially unwanted
BitDefenderGen:Variant.Marsilia.103611
AvastWin32:MiscX-gen [PUP]
EmsisoftGen:Variant.Marsilia.103611 (B)
DrWebAdware.Linkury.147
VIPREGen:Variant.Marsilia.103611
FireEyeGen:Variant.Marsilia.103611
IkarusPUA.MediaArena
ArcabitTrojan.Marsilia.D194BB
GDataGen:Variant.Marsilia.103611
ALYacGen:Variant.Marsilia.103611
MAXmalware (ai score=81)
MalwarebytesPUP.Optional.MediaArena
RisingPUA.MediaArena!8.17AFC (CLOUD)
FortinetAdware/MediaArena
AVGWin32:MiscX-gen [PUP]
DeepInstinctMALICIOUS

How to remove PUP.Optional.MediaArena?

PUP.Optional.MediaArena removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment