Trojan

TrojanDownloader:Win32/Unruy.S removal guide

Malware Removal

The TrojanDownloader:Win32/Unruy.S is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Unruy.S virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine TrojanDownloader:Win32/Unruy.S?


File Info:

name: F80D1B8D9A259314D5C3.mlw
path: /opt/CAPEv2/storage/binaries/a47cd75c40039fa80294667b7c0466a7f1a671930b0eeb2ebd30f149a04c6c0a
crc32: 3FF53A1F
md5: f80d1b8d9a259314d5c3dfb186e73c19
sha1: d4d22310e4c3f2007ad2b3ce9abd5b43271cf353
sha256: a47cd75c40039fa80294667b7c0466a7f1a671930b0eeb2ebd30f149a04c6c0a
sha512: 05b5678d69f59891035946bd75d0e456bc19e971bbb5ea3f61935664d1c910e315f0b5ba487d8a335b7f9ef32eba699feaa0d8020d98280e5cab77c7339979ff
ssdeep: 6144:yXF8Pqua1nyaRbUtG/VdK9Izb/tQbdmtTB7b1:y18Pqua1nbUtG/VdK9S7timtT3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14C26836DB6C453A8C9F35CB412511224A7DB0FB1AFBA4C83F283DE8AE71659358C171B
sha3_384: e3123b7f46c9dcabab821c990a4d915c663125bf8cb440b38f626ac2ec31c20039bfa40e6df99bddf739775b33d03a81
ep_bytes: 558bec6aff68908b440068a02a440064
timestamp: 2011-04-14 09:35:24

Version Info:

0: [No Data]

TrojanDownloader:Win32/Unruy.S also known as:

BkavW32.AIDetectMalware
AVGWin32:TrojanX-gen [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.107378
FireEyeGeneric.mg.f80d1b8d9a259314
CAT-QuickHealDownloader.Unruy.16639
SkyhighGenericRXEV-TF!F80D1B8D9A25
ALYacGen:Variant.Midie.107378
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 002589dc1 )
K7GWTrojan ( 002589dc1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36802.@tZ@aGwwk!mb
VirITBackdoor.Win32.Generic.BUCX
SymantecW32.Unruy.A
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Agent.OCR
CynetMalicious (score: 100)
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Midie.107378
NANO-AntivirusTrojan.Win32.Renamer.lloxl
TencentTrojan.Win32.Agent.la
EmsisoftGen:Variant.Midie.107378 (B)
BaiduWin32.Trojan.Kryptik.ak
F-SecureTrojan.TR/AVI.TrojanX.eozdw
DrWebBackDoor.Bandito.1215
VIPREGen:Variant.Midie.107378
TrendMicroTROJ_GEN.R03BC0CDE24
Trapminemalicious.moderate.ml.score
SophosMal/GamePSW-L
JiangminBackdoor/Banito.ts
VaristW32/Unruy.H.gen!Eldorado
AviraTR/AVI.TrojanX.eozdw
MAXmalware (ai score=86)
Antiy-AVLTrojan[Downloader]/Win32.Unruy
MicrosoftTrojanDownloader:Win32/Unruy.S
XcitiumBackdoor.Win32.IRCnite.SP@4aox4a
ArcabitTrojan.Midie.D1A372
ViRobotBackdoor.Win32.A.Banito.4524448
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Midie.107378
GoogleDetected
AhnLab-V3Backdoor/Win32.Banito.C64248
McAfeeGenericRXEV-TF!F80D1B8D9A25
TACHYONTrojan/W32.Genome.4524448
VBA32Trojan.TE.01527
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BC0CDE24
RisingDownloader.Unruy!8.D8 (TFE:5:OwEZnbrFlXE)
YandexTrojan.GenAsa!xVZknDJEbZM
IkarusBackdoor.Win32.Banito
MaxSecureVirus.W32.Renamer.E
FortinetW32/Banito.CN!tr
DeepInstinctMALICIOUS
alibabacloudTrojan.Win.UnkAgent

How to remove TrojanDownloader:Win32/Unruy.S?

TrojanDownloader:Win32/Unruy.S removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment