PUA

What is “PUP.Optional.TrustMedia”?

Malware Removal

The PUP.Optional.TrustMedia is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.TrustMedia virus can do?

  • Scheduled file move on reboot detected
  • Anomalous file deletion behavior detected (10+)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Steals private information from local Internet browsers
  • Creates a copy of itself

How to determine PUP.Optional.TrustMedia?


File Info:

name: E5AF503DC3D855CFDAE5.mlw
path: /opt/CAPEv2/storage/binaries/01a1ed2629f83cfababe126ffb0f50e16675ed083ea35b33907f8eb851507b52
crc32: 98515D68
md5: e5af503dc3d855cfdae557de478a9a5e
sha1: fcab7a3cd865f87e94d74a5299138afa655ee609
sha256: 01a1ed2629f83cfababe126ffb0f50e16675ed083ea35b33907f8eb851507b52
sha512: 08f70abbc523e50883fd31da7f0833c400c814f2cd4b2de458d833573ba370f158bf5805d582b74d3434139f86d2090cd91c3d51d7ef2110298bfe323dbf001f
ssdeep: 6144:Ee34OijKTK0HVkUEYA2q5NbrWN83gQwwDuzMn6yDkvE39kojTxDtET:HijeKuVnvon+N83LwwiAn6KkM33nxDO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16754224BB1C0C976E2460E338A737339F336EE85119226DB0768BF777F2498685112E8
sha3_384: 9360c2e800b5c90d193af32bdd41f81ea47dfad3848631634195a2d2f485ad36959110857021c934b0aabb239b2e820c
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:50:52

Version Info:

CompanyName: Trust Media Viewer
CompanyWebsite:
FileDescription:
FileVersion: 1.1
LegalCopyright:
ProductName: Trust Media Viewer alpha 6031
ProductVersion: 1.1
Translation: 0x0000 0x04e4

PUP.Optional.TrustMedia also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanApplication.Bundler.EV
FireEyeApplication.Bundler.EV
McAfeeArtemis!E5AF503DC3D8
CylanceUnsafe
ZillyaAdware.Amonetize.Win32.55214
SangforAdware.Win32.Amonetize.Gen7
K7AntiVirusTrojan ( 0049026a1 )
AlibabaAdWare:Win32/Amonetize.44c9750b
K7GWTrojan ( 0049026a1 )
CrowdStrikewin/malicious_confidence_100% (D)
VirITAdware.Win32.Bandoo.DE
CyrenW32/Amonetizer.DPPI-7851
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Amonetize.X potentially unwanted
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
Kasperskynot-a-virus:AdWare.Win32.Amonetize.fqpt
BitDefenderApplication.Bundler.EV
NANO-AntivirusRiskware.Win32.Amonetize.ddycxy
SUPERAntiSpywarePUP.TrustMediaViewer/Variant
AvastWin32:Adware-gen [Adw]
TencentWin32.Adware.Amonetize.Akyx
EmsisoftApplication.Bundler.EV (B)
ComodoApplicUnwnt@#3urh9ra1mluig
DrWebTrojan.Amonetize.8
VIPREAdware.Bettersurf (fs)
TrendMicroTROJ_SPNR.0BGA14
McAfee-GW-EditionBehavesLike.Win32.AdwareBSurf.dc
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Adware.Amonetize.M
JiangminAdWare.Amonetize.arcr
eGambitGeneric.Adware
AviraADWARE/Adware.Gen7
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwNS.27B7
GridinsoftRansom.Win32.Occamy.sa
MicrosoftTrojan:Win32/Occamy.C01
AhnLab-V3PUP/Win32.Amonetize.R96015
ALYacApplication.Bundler.EV
VBA32Adware.Amonetize
MalwarebytesPUP.Optional.TrustMedia
TrendMicro-HouseCallTROJ_SPNR.0BGA14
YandexPUA.Amonetize!mFuHsPGnN3E
FortinetW32/Amonetize.F!tr
AVGWin32:Adware-gen [Adw]
Cybereasonmalicious.dc3d85
PandaTrj/CI.A

How to remove PUP.Optional.TrustMedia?

PUP.Optional.TrustMedia removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment