PUA

PUP.Optional.Vittalia.DDS information

Malware Removal

The PUP.Optional.Vittalia.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.Vittalia.DDS virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Detects Bochs through the presence of a registry key
  • Attempted to write directly to a physical drive
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Deletes executed files from disk
  • Collects information to fingerprint the system
  • Uses suspicious command line tools or Windows utilities

How to determine PUP.Optional.Vittalia.DDS?


File Info:

name: B42258ABE9B7FA8F789B.mlw
path: /opt/CAPEv2/storage/binaries/e9a9c3318efdcf60d8c2fe225f148bbb28bbc82f22044a3b703f667500a7781c
crc32: 34599810
md5: b42258abe9b7fa8f789be1e7b5d04c82
sha1: 1bd1bf25e40a0b686650935c34deaabd69f8bab5
sha256: e9a9c3318efdcf60d8c2fe225f148bbb28bbc82f22044a3b703f667500a7781c
sha512: 9c26158538132e243fc2482216ad5729722ffd9cc1a9498129e985d8f13e9a46c775153ed8a3dd5eb51079955eaf9c14c27fea3dc72c4206f38c4488caec3159
ssdeep: 6144:xFJ05/mVqzwyhjFx/vpPoMVnIsziJvp7x:8BwSjF/DNIs2Jvpt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18434121AD8C88AA7F4F102705B77AA25DF36820110726FD713A41FF27EE1AC3A54B197
sha3_384: 443d413425b33a6433cac8a2fdc633fe895fa24eebecd38f7e8cc642d6869c1058403b13c788e0f38beb858eaec74c2f
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-12-05 22:52:12

Version Info:

0: [No Data]

PUP.Optional.Vittalia.DDS also known as:

BkavW32.AIDetectMalware
LionicAdware.Win32.Generic.mo6W
AVGWin32:Trojan-gen
Elasticmalicious (high confidence)
FireEyeGeneric.mg.b42258abe9b7fa8f
McAfeeArtemis!B42258ABE9B7
Cylanceunsafe
SangforDownloader.Win32.Presenoker.V288
CrowdStrikewin/grayware_confidence_70% (D)
AlibabaMalware:Win32/km_2c3f02.None
K7GWTrojan ( 0048bfab1 )
K7AntiVirusTrojan ( 0048bfab1 )
VirITTrojan.Win32.Siggen6.BCTB
CyrenW32/Trojan.GPNI-8504
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Vittalia.W potentially unwanted
CynetMalicious (score: 100)
APEXMalicious
KasperskyHEUR:Trojan-Downloader.Win32.Agent.gen
NANO-AntivirusTrojan.Win32.Generic.cspepc
SUPERAntiSpywarePUP.Vittalia/Variant
AvastWin32:Trojan-gen
TencentWin32.Trojan-Downloader.Agent.Vsmw
F-SecureProgram.APPL/Agent.yady
DrWebTrojan.DownLoader10.36044
McAfee-GW-EditionBehavesLike.Win32.AdwareOutBrowse.dc
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
AviraAPPL/Agent.yady
Antiy-AVLTrojan/Win32.TSGeneric
XcitiumMalware@#t7cdf23pm4eo
MicrosoftProgram:Win32/Wacapew.C!ml
ViRobotTrojan.Win32.Z.Vittalia.234483
ZoneAlarmHEUR:Trojan-Downloader.Win32.Agent.gen
GoogleDetected
AhnLab-V3Adware/Win32.Agent.R87515
VBA32Trojan.Downloader
MalwarebytesPUP.Optional.Vittalia.DDS
PandaTrj/NsisDownloader.A
TrendMicro-HouseCallTROJ_GEN.R002H0CGN23
RisingPUF.Presenoker!8.F608 (TFE:5:bO7ovX5wo9R)
YandexRiskware.Agent!EYRvG1VWkOc
FortinetRiskware/Vittalia
Cybereasonmalicious.5e40a0
DeepInstinctMALICIOUS

How to remove PUP.Optional.Vittalia.DDS?

PUP.Optional.Vittalia.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment