PUA

PUP.Optional.YogaSearch removal guide

Malware Removal

The PUP.Optional.YogaSearch is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.YogaSearch virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
nnja.ws

How to determine PUP.Optional.YogaSearch?


File Info:

crc32: 6E315264
md5: 77a69cad7d58847c686f7aafa606b85f
name: kernel_x86.exe
sha1: 06360868fe64c01fbf8da2c27ca07c8a6da499b0
sha256: fed97f1c86bb0381728f832b11cd26b6951e0f1dddbfb1cfe47a75b796f3799a
sha512: a8422a78bede898c69c3b7ee8c28bd42e0a152205784c0555abbb0bcd8e2f883542fcbdaa489dc09742cedb0c986dcd1c745d7f8fba4c5d8c774223859fe1e88
ssdeep: 24576:j5pE0pnVi3YkpIT46NmAnI+NbcGCkqe7sELKnI+Nbc2GBjY:7E0pnQokyT1/pNqe7sELKp+jY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PUP.Optional.YogaSearch also known as:

MicroWorld-eScanTrojan.GenericKD.6326313
FireEyeGeneric.mg.77a69cad7d58847c
McAfeeArtemis!77A69CAD7D58
ALYacTrojan.GenericKD.6326313
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
BitDefenderTrojan.GenericKD.6326313
Cybereasonmalicious.d7d588
F-ProtW32/S-0a3f845f!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Zusy-6611625-0
GDataTrojan.GenericKD.6326313
AlibabaTrojan:MSIL/ExtenBro.e361ac96
NANO-AntivirusTrojan.Win32.ExtenBro.evydqy
TencentWin32.Trojan.Extenbro.Ajby
Endgamemalicious (high confidence)
SophosMal/Generic-S
ComodoMalware@#1e2aj9dcd1l9n
F-SecureHeuristic.HEUR/AGEN.1126206
ZillyaTrojan.GenericKD.Win32.98882
Invinceaheuristic
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.6326313 (B)
IkarusTrojan.MSIL.ExtenBro
CyrenW32/S-0a3f845f!Eldorado
AviraTR/ExtenBro.xdwes
Antiy-AVLTrojan/Win32.TSGeneric
ArcabitTrojan.Generic.D608829
MicrosoftTrojan:Win32/Wacatac.C!ml
CynetMalicious (score: 100)
VBA32suspected of Trojan.Downloader.gen.s
MAXmalware (ai score=99)
Ad-AwareTrojan.GenericKD.6326313
MalwarebytesPUP.Optional.YogaSearch
PandaTrj/CI.A
ESET-NOD32a variant of MSIL/ExtenBro.CX
RisingTrojan.ExtenBro!8.51 (CLOUD)
YandexTrojan.ExtenBro!
SentinelOneDFI – Suspicious PE
FortinetW32/ExtenBro.CS!tr
BitDefenderThetaGen:NN.ZemsilCO.34136.am0@a0QmRpo
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.4e5

How to remove PUP.Optional.YogaSearch?

PUP.Optional.YogaSearch removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment