Trojan

Trojan.Dropper.Agent.UUK removal guide

Malware Removal

The Trojan.Dropper.Agent.UUK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Dropper.Agent.UUK virus can do?

  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine Trojan.Dropper.Agent.UUK?


File Info:

name: 0AF9A7D5830046D04F25.mlw
path: /opt/CAPEv2/storage/binaries/4c510ea257ef3841f94f54e09257ed35c2a369ee9a62dde9318953b23726a21f
crc32: CF932B6E
md5: 0af9a7d5830046d04f25ce12e0ce97d9
sha1: b32e865c55b2dd1568f9a96b080b6d7bf30f026b
sha256: 4c510ea257ef3841f94f54e09257ed35c2a369ee9a62dde9318953b23726a21f
sha512: 971e6ba4064a4c7f5278bbeec5baed5fb1a9c2bad9734ade552aa6515634d7e243e574039f96d0e759561b7fb2e964fb9c470010859e813d58ee55bc1a08687d
ssdeep: 6144:kwuc7Y+EiQ2zJnh0kKMfSko59xvzHJQEqxpllBeA6IKli8bQTBs4l7UAO+u49MRC:kwuc8+EL2zJh0nMfSjLJzHJQEqxHlBeR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14D849E32B8D0FA76E4774333E4CF46EA5A65BB240D325F53AA9C02B91718417D2353AE
sha3_384: 94d6919a4065a9c7af3e11d20788d9669b299fba7f41c18fa7be7c607fd321101d8adde468685f5789780a70ab48432c
ep_bytes: e8fe30feffe96fe201006a1068d01a45
timestamp: 2010-01-12 23:01:35

Version Info:

0: [No Data]

Trojan.Dropper.Agent.UUK also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent2.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Winlock.591
MicroWorld-eScanTrojan.Dropper.Agent.UUK
FireEyeGeneric.mg.0af9a7d5830046d0
SkyhighBehavesLike.Win32.Generic.fh
McAfeeGenericRXKS-SN!0AF9A7D58300
MalwarebytesMachineLearning/Anomalous.100%
VIPRETrojan.Dropper.Agent.UUK
SangforTrojan.Win32.Save.a
BitDefenderTrojan.Dropper.Agent.UUK
Cybereasonmalicious.c55b2d
BitDefenderThetaGen:NN.ZexaF.36792.xqW@aGE5Usk
VirITTrojan.Win32.SHeur2.CGCQ
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/LockScreen.GX
CynetMalicious (score: 100)
APEXMalicious
KasperskyTrojan.Win32.Agent2.fmbb
AlibabaTrojan:Win32/LockScreen.b1fb4780
NANO-AntivirusTrojan.Win32.PogBlock.deqdu
RisingTrojan.Occamy!8.F1CD (TFE:5:mS0SeB2IMqK)
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1318994
ZillyaTrojan.PogBlock.Win32.157
TrendMicroTROJ_RANSOM.SMM
Trapminemalicious.high.ml.score
EmsisoftTrojan.Dropper.Agent.UUK (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/PogBlock.iu
WebrootW32.Malware.Gen
VaristW32/Ransom.C.gen!Eldorado
AviraHEUR/AGEN.1318994
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Unknown.a
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumSuspicious@#ii4fc22kj9y2
ArcabitTrojan.Dropper.Agent.UUK
ZoneAlarmTrojan.Win32.Agent2.fmbb
GDataTrojan.Dropper.Agent.UUK
GoogleDetected
AhnLab-V3Trojan/Win32.Xema.C65537
VBA32BScope.Trojan.Agent
ALYacTrojan.Dropper.Agent.UUK
DeepInstinctMALICIOUS
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallTROJ_RANSOM.SMM
YandexTrojan.GenAsa!PuchLIwrlmc
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.3242373.susgen
FortinetW32/PogBlock.AKM!tr
AVGWin32:Ransom-R [Trj]
AvastWin32:Ransom-R [Trj]
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan.Dropper.Agent.UUK?

Trojan.Dropper.Agent.UUK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment