Trojan

TrojanDownloader:Win32/Unruy.I removal guide

Malware Removal

The TrojanDownloader:Win32/Unruy.I is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Unruy.I virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Creates a hidden or system file

How to determine TrojanDownloader:Win32/Unruy.I?


File Info:

crc32: 8605A3A4
md5: 8daa6505b1f103275db843bd135d2558
name: 8DAA6505B1F103275DB843BD135D2558.mlw
sha1: b1597d9d5c3cf7c965c760312dbb832cc4d02dcd
sha256: 1043b3cfe37d41becab4452f7ee1a7f21b3be48d004a878de2f2b04950812edc
sha512: 8c21ea9e5945d682e6303a38de3f7cb6c2acfcac0b25d72b7acaa64d74622382eb0d0029d3603d00fe6b7eca4be2bfa842663e4ba5cea00f273b10815fa60ec0
ssdeep: 6144:rKP9NC8t8zErgsTlXvXBmJitTBe8Vaz3q:m1NC8K90/X2itTSz3q
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

TrojanDownloader:Win32/Unruy.I also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Unruy.5
FireEyeGeneric.mg.8daa6505b1f10327
CAT-QuickHealW32.Agent.EA
ALYacGen:Variant.Unruy.5
CylanceUnsafe
VIPRETrojan-Downloader.Win32.Unruy.q (v)
SangforMalware
K7AntiVirusTrojan ( 00050a041 )
BitDefenderGen:Variant.Unruy.5
K7GWTrojan ( 0056f1231 )
Cybereasonmalicious.5b1f10
BaiduWin32.Backdoor.Gpigeon2010.a
CyrenW32/Unruy.H.gen!Eldorado
SymantecTrojan.Artilyb
TotalDefenseWin32/Banito.EW!genus
APEXMalicious
AvastWin32:Unruy-B [Trj]
ClamAVWin.Downloader.Unruy-7604228-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Renamer.llnjs
ViRobotBackdoor.Win32.A.Banito.1023399
TencentTrojan.Win32.Banito.a
Ad-AwareGen:Variant.Unruy.5
EmsisoftGen:Variant.Unruy.5 (B)
ComodoTrojWare.Win32.Agent.QTU@4pnpwj
F-SecureMalware.W32/Agent.EA
DrWebBackDoor.Bandito.1082
TrendMicroTROJ_UNRUY.SMKV
McAfee-GW-EditionDownloader-BZH.gen.a
SophosML/PE-A + Mal/Unruy-D
SentinelOneStatic AI – Malicious PE – Downloader
JiangminBackdoor.Banito.r
WebrootW32.Malware.Gen
AviraW32/Agent.EA
eGambitUnsafe.AI_Score_99%
MAXmalware (ai score=89)
Antiy-AVLTrojan[Backdoor]/Win32.Banito
MicrosoftTrojanDownloader:Win32/Unruy.I
ArcabitTrojan.Unruy.5
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Unruy.5
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Banito.R10247
Acronissuspicious
McAfeeDownloader-BZH.gen.a
VBA32Backdoor.Banito
MalwarebytesUnruy.Trojan.Downloader.DDS
PandaGeneric Malware
ZonerTrojan.Win32.87957
ESET-NOD32Win32/Obfuscated.NEZ
TrendMicro-HouseCallTROJ_UNRUY.SMKV
RisingBackdoor.Win32.Deflate.f (CLASSIC)
YandexTrojan.GenAsa!C9wTBe/6AMQ
IkarusTrojan-Downloader.Win32.Unruy
MaxSecureVirus.W32.Renamer.E
FortinetW32/Banito.ADU!tr
BitDefenderThetaAI:Packer.75F377F01F
AVGWin32:Unruy-B [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Virus.Win32.Banito.Q

How to remove TrojanDownloader:Win32/Unruy.I?

TrojanDownloader:Win32/Unruy.I removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment