PUA

PUP.Optional.RegistryRepairPro removal instruction

Malware Removal

The PUP.Optional.RegistryRepairPro is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.RegistryRepairPro virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it

Related domains:

www.3bstreaming.com

How to determine PUP.Optional.RegistryRepairPro?


File Info:

crc32: 00D7B41E
md5: a8e4cac1f00607dce5da2a79b7caacf1
name: A8E4CAC1F00607DCE5DA2A79B7CAACF1.mlw
sha1: 1943c5ed342ed6f8eff929e46bc3848066f04b35
sha256: 8d8db168901d24ad0e625220615116b6e392ae02802c7c7e75f5346c26cdc010
sha512: 6a1f1a03a63f4966f04aed65ba7a861118f787c54365944fa6d627c2690770a153f6cb488377b21f40750ef50987533254b8c811dcff9299104c19353b13c0f4
ssdeep: 12288:7na9yGL8+iDNdRSl1VohmRoFcCcpgwTy:7naUm8DdC1VoXcCcpgey
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2011 3B Software, Inc.
FileVersion:
CompanyName: 3B Software, Inc.
Comments: This installation was built with Inno Setup.
ProductName: Registry Repair Pro
ProductVersion:
FileDescription: Registry Repair Pro Setup
Translation: 0x0000 0x04b0

PUP.Optional.RegistryRepairPro also known as:

FireEyeApplication.Sobrab.NI
McAfeeArtemis!A8E4CAC1F006
CylanceUnsafe
K7AntiVirusRiskware ( dec0011e1 )
BitDefenderApplication.Sobrab.NI
K7GWRiskware ( dec0011e1 )
SymantecPUA.Superfluss
APEXMalicious
AvastFileRepMetagen [Malware]
CynetMalicious (score: 85)
KasperskyHoax.Win32.DeceptPCClean.ou
ViRobotAdware.Registryrepairpro.406616
AegisLabRiskware.Win32.Generic.1!c
MicroWorld-eScanApplication.Sobrab.NI
Ad-AwareApplication.Sobrab.NI
EmsisoftApplication.Sobrab.NI (B)
ComodoApplicUnwnt@#73d75z4sea51
F-SecurePotentialRisk.PUA/RegistryRepair.EL
DrWebProgram.Unwanted.2134
ZillyaTool.DeceptPCClean.Win32.108
TrendMicroPUA_RegCleanPro
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-R + Troj/Decept-IQ
JiangminHoax.DeceptPCClean.amt
AviraPUA/RegistryRepair.EL.1
MicrosoftMisleading:Win32/Lodi
ArcabitApplication.Sobrab.NI
ZoneAlarmHoax.Win32.DeceptPCClean.ou
GDataApplication.Sobrab.NI
ALYacApplication.Sobrab.NI
MAXmalware (ai score=70)
MalwarebytesPUP.Optional.RegistryRepairPro
PandaPUP/RegUtility
ESET-NOD32Win32/UwS.RegistryRepairPro.B
TrendMicro-HouseCallPUA_RegCleanPro
MaxSecureTrojan.Malware.74437185.susgen
AVGFileRepMetagen [Malware]

How to remove PUP.Optional.RegistryRepairPro?

PUP.Optional.RegistryRepairPro removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment