Malware

What is “Exploit.Win32.UAC.hpr”?

Malware Removal

The Exploit.Win32.UAC.hpr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Exploit.Win32.UAC.hpr virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Exploit.Win32.UAC.hpr?


File Info:

crc32: FF1B23A0
md5: 3d5d8239652b5be0a2ff6a17d0321fd7
name: 3D5D8239652B5BE0A2FF6A17D0321FD7.mlw
sha1: 71d28f09caa8dc8b82bea124f226b24edb1f891a
sha256: bea16fcbe3fca90654deebc3cb31edf6f6c00a79c5ccc834b92754a90e55417b
sha512: 2dfd95ecf65c88ded2797484530699d096fc23a749a72271480e5d6e024c5966c1dec0fc22b397d8f6493d4bacfc02ab01ca72d8729cec1b05df7c1effb7804c
ssdeep: 12288:MwmGNncIMGFpukbg9m45hBVADS1gVEzidG81IoLq:M/dGFIknch8hVY67
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Exploit.Win32.UAC.hpr also known as:

LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.15279
ALYacTrojan.GenericKD.37654509
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaRiskWare:Win32/PassUAC.311f1429
K7GWTrojan ( 00581b891 )
CyrenW32/Injector.OOYW-5070
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EQAB
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyExploit.Win32.UAC.hpr
BitDefenderTrojan.GenericKD.37654509
MicroWorld-eScanTrojan.GenericKD.37654509
Ad-AwareTrojan.GenericKD.37654509
FireEyeGeneric.mg.3d5d8239652b5be0
EmsisoftTrojan.GenericKD.37654509 (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_84%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Script/Phonzy.B!ml
GDataTrojan.GenericKD.37654509
AhnLab-V3Trojan/Win.RATX-gen.R442771
McAfeeRDN/Generic.grp
MAXmalware (ai score=86)
VBA32BScope.TrojanSpy.Noon
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H0CIP21
RisingTrojan.Generic@ML.80 (RDMK:d/gNgwk69WtBh7IMgTKSKg)
IkarusTrojan.Win32.Injector
FortinetW32/Delf.DCB!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Exploit.Win32.UAC.hpr?

Exploit.Win32.UAC.hpr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment