Categories: PUA

PUP.Optional.YogaSearch removal guide

The PUP.Optional.YogaSearch is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PUP.Optional.YogaSearch virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
nnja.ws

How to determine PUP.Optional.YogaSearch?


File Info:

crc32: 6E315264md5: 77a69cad7d58847c686f7aafa606b85fname: kernel_x86.exesha1: 06360868fe64c01fbf8da2c27ca07c8a6da499b0sha256: fed97f1c86bb0381728f832b11cd26b6951e0f1dddbfb1cfe47a75b796f3799asha512: a8422a78bede898c69c3b7ee8c28bd42e0a152205784c0555abbb0bcd8e2f883542fcbdaa489dc09742cedb0c986dcd1c745d7f8fba4c5d8c774223859fe1e88ssdeep: 24576:j5pE0pnVi3YkpIT46NmAnI+NbcGCkqe7sELKnI+Nbc2GBjY:7E0pnQokyT1/pNqe7sELKp+jYtype: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PUP.Optional.YogaSearch also known as:

MicroWorld-eScan Trojan.GenericKD.6326313
FireEye Generic.mg.77a69cad7d58847c
McAfee Artemis!77A69CAD7D58
ALYac Trojan.GenericKD.6326313
Cylance Unsafe
VIPRE Trojan.Win32.Generic!BT
Sangfor Malware
BitDefender Trojan.GenericKD.6326313
Cybereason malicious.d7d588
F-Prot W32/S-0a3f845f!Eldorado
Symantec ML.Attribute.HighConfidence
APEX Malicious
Avast Win32:Malware-gen
ClamAV Win.Dropper.Zusy-6611625-0
GData Trojan.GenericKD.6326313
Alibaba Trojan:MSIL/ExtenBro.e361ac96
NANO-Antivirus Trojan.Win32.ExtenBro.evydqy
Tencent Win32.Trojan.Extenbro.Ajby
Endgame malicious (high confidence)
Sophos Mal/Generic-S
Comodo Malware@#1e2aj9dcd1l9n
F-Secure Heuristic.HEUR/AGEN.1126206
Zillya Trojan.GenericKD.Win32.98882
Invincea heuristic
Trapmine malicious.high.ml.score
Emsisoft Trojan.GenericKD.6326313 (B)
Ikarus Trojan.MSIL.ExtenBro
Cyren W32/S-0a3f845f!Eldorado
Avira TR/ExtenBro.xdwes
Antiy-AVL Trojan/Win32.TSGeneric
Arcabit Trojan.Generic.D608829
Microsoft Trojan:Win32/Wacatac.C!ml
Cynet Malicious (score: 100)
VBA32 suspected of Trojan.Downloader.gen.s
MAX malware (ai score=99)
Ad-Aware Trojan.GenericKD.6326313
Malwarebytes PUP.Optional.YogaSearch
Panda Trj/CI.A
ESET-NOD32 a variant of MSIL/ExtenBro.CX
Rising Trojan.ExtenBro!8.51 (CLOUD)
Yandex Trojan.ExtenBro!
SentinelOne DFI – Suspicious PE
Fortinet W32/ExtenBro.CS!tr
BitDefenderTheta Gen:NN.ZemsilCO.34136.am0@a0QmRpo
AVG Win32:Malware-gen
Paloalto generic.ml
CrowdStrike win/malicious_confidence_60% (W)
Qihoo-360 Win32/Trojan.4e5

How to remove PUP.Optional.YogaSearch?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Malware.AI.3842243794 removal guide

The Malware.AI.3842243794 is considered dangerous by lots of security experts. When this infection is active,…

5 mins ago

Packer.Morphine.B information

The Packer.Morphine.B is considered dangerous by lots of security experts. When this infection is active,…

10 mins ago

What is “TrojanDownloader:Win32/Beebone.AG”?

The TrojanDownloader:Win32/Beebone.AG is considered dangerous by lots of security experts. When this infection is active,…

11 mins ago

TrojanDownloader:Win32/Whynxy.A removal instruction

The TrojanDownloader:Win32/Whynxy.A is considered dangerous by lots of security experts. When this infection is active,…

21 mins ago

Malware.AI.3248065089 removal tips

The Malware.AI.3248065089 is considered dangerous by lots of security experts. When this infection is active,…

21 mins ago

Generic.Dacic.94CCEEA9.A.8C28D63A removal

The Generic.Dacic.94CCEEA9.A.8C28D63A is considered dangerous by lots of security experts. When this infection is active,…

21 mins ago