Malware

Exploit.Win32.UAC.eez removal guide

Malware Removal

The Exploit.Win32.UAC.eez is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Exploit.Win32.UAC.eez virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Detected script timer window indicative of sleep style evasion
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Exploit.Win32.UAC.eez?


File Info:

crc32: D6E6374C
md5: f84939a58b74f3b1dff3f5ff1a4ca5e0
name: 1file.exe
sha1: 76593ea2cab40971811ceb3ab3d53d6f15feb355
sha256: d089b46aab018b79ef8b96d7f0a13aaebdfe851be31ad0aff96dbe54fd40091b
sha512: 8ca6e93375ca42d70b8ec264859e25660e8ccb0908b9f7be0af715a7c658452989a18c5052ebe72a15231f21d5b9059db4647c1214d29af6ba59615f06ce0497
ssdeep: 49152:AKRBIwoYDA1+sEQBs1leO6DONIAfzUQgwqN5I+TB+NFPQC1oXMk3VFRj0/J7:AKRBzFD5OPO6mfIQSh+PPQC1oMU2/J7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Exploit.Win32.UAC.eez also known as:

MicroWorld-eScanTrojan.GenericKD.33318370
FireEyeGeneric.mg.f84939a58b74f3b1
Qihoo-360QVM41.1.Malware.Gen
CylanceUnsafe
K7AntiVirusTrojan ( 004cdf551 )
BitDefenderTrojan.GenericKD.33318370
K7GWTrojan ( 004cdf551 )
CrowdStrikewin/malicious_confidence_60% (W)
CyrenJS/Agent.AGG4!Eldorado
SymantecTrojan.Gen.MBT
TrendMicro-HouseCallTROJ_GEN.R002H0CBK20
KasperskyExploit.Win32.UAC.eez
AlibabaBackdoor:MSIL/SpyGate.88bec41e
NANO-AntivirusTrojan.Script.Downloader.fpevwy
AegisLabHacktool.Win32.UAC.3!c
TencentWin32.Exploit.Uac.Ectt
Ad-AwareTrojan.GenericKD.33318370
SophosMal/Generic-S
F-SecureTrojan.TR/Agent.ipzzm
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Dropper.vc
EmsisoftTrojan.GenericKD.33318370 (B)
APEXMalicious
F-ProtJS/Agent.AGG4!Eldorado
WebrootW32.Downloader.Gen
AviraTR/Agent.ipzzm
MicrosoftTrojanSpy:MSIL/Blanajog.A
ArcabitTrojan.Generic.D1FC65E2
ZoneAlarmHEUR:Backdoor.MSIL.SpyGate.gen
GDataMSIL.Trojan-Spy.Keylogger.DYZWI3
McAfeeArtemis!F84939A58B74
MAXmalware (ai score=83)
ESET-NOD32a variant of MSIL/Agent.ADE
RisingTrojan.Agent!8.B1E (TOPIS:E0:8wAWztmObIH)
eGambitUnsafe.AI_Score_95%
FortinetJS/Agent.SYH!tr.dldr
AVGVBS:Downloader-ANE [Trj]
Cybereasonmalicious.2cab40
AvastVBS:Downloader-ANE [Trj]

How to remove Exploit.Win32.UAC.eez?

Exploit.Win32.UAC.eez removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment