Trojan

Should I remove “TrojanDownloader:Win32/Unruy!pz”?

Malware Removal

The TrojanDownloader:Win32/Unruy!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Unruy!pz virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses suspicious command line tools or Windows utilities

How to determine TrojanDownloader:Win32/Unruy!pz?


File Info:

name: 583C538799CA8DC7BBDF.mlw
path: /opt/CAPEv2/storage/binaries/d1c93c1eaa1a309d749f49fa5e9fea469490b8b9b98f1df5ee5cc23848e5174f
crc32: E112B690
md5: 583c538799ca8dc7bbdf254983c45855
sha1: 7f440cb31b6341a733213213a8825cd6e375fe84
sha256: d1c93c1eaa1a309d749f49fa5e9fea469490b8b9b98f1df5ee5cc23848e5174f
sha512: b7484657ee6057fc2a6fbdaeaba5e03acf67538d3b04a6e15e8a3027a2304b055ebbf2b6dfd05be1180b581625695688e50f69050ec87054723472d67bef04c6
ssdeep: 24576:EjqgEspP+dYIQiBMX9STLrF2VKzLNFHa3G/Zsq:iEsn+7vAVKH/Cq
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17F35B2B0D9666B76F737DB5B89BA7D38CB1533B7BA43A5CB0434718115222C2AF0610E
sha3_384: f24ba7c84cb6b425e5f798f7d5c06421b2491c92675ffac589cba7e0b00353a7d12f592246e4314a4065ff0192b53a3f
ep_bytes: 558bec6aff68c880400068ac58400064
timestamp: 2009-12-11 21:31:37

Version Info:

0: [No Data]

TrojanDownloader:Win32/Unruy!pz also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebWin32.HLLC.Asdas.22
MicroWorld-eScanTrojan.GenericKDZ.74189
FireEyeGeneric.mg.583c538799ca8dc7
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Generic.tm
McAfeeGenericRXMN-SQ!583C538799CA
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDownloader.Unruy.Win32.7662
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan-Downloader ( 001156081 )
K7GWTrojan-Downloader ( 001156081 )
Cybereasonmalicious.799ca8
BitDefenderThetaGen:NN.ZexaF.36802.frZ@ayx8@Ro
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/TrojanDownloader.Unruy.AY
APEXMalicious
TrendMicro-HouseCallTROJ_UNRUY.SMT
AvastWin32:Unruy-AA [Trj]
ClamAVWin.Downloader.Unruy-6988793-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKDZ.74189
NANO-AntivirusTrojan.Win32.Unruy.ibnpwx
TencentTrojan.Win32.Unruy.wa
EmsisoftTrojan.GenericKDZ.74189 (B)
GoogleDetected
F-SecureTrojan.TR/Dropper.Gen
BaiduWin32.Trojan-Clicker.Cycler.a
VIPRETrojan.GenericKDZ.74189
TrendMicroTROJ_UNRUY.SMT
Trapminemalicious.high.ml.score
SophosTroj/Cycler-C
IkarusTrojan-Downloader.Win32.Unruy
GDataWin32.Trojan.PSE.4PGMWY
JiangminTrojan.Generic.glpgv
VaristW32/Unruy.U.gen!Eldorado
AviraTR/Dropper.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan[Downloader]/Win32.Unruy
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.TrojanSpy.BZub.~IP@f810f
ArcabitTrojan.Generic.D121CD
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojanDownloader:Win32/Unruy!pz
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Unruy.1355704
Acronissuspicious
VBA32BScope.TrojanDownloader.Unruy
ALYacTrojan.GenericKDZ.74189
Cylanceunsafe
PandaGeneric Suspicious
RisingDownloader.Unruy!1.AE5E (CLASSIC)
YandexTrojan.GenAsa!S4Mv8DNs2+w
SentinelOneStatic AI – Malicious PE
FortinetW32/Cycler.TL!tr
AVGWin32:Unruy-AA [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan:Win/Unruy.A(dyn)

How to remove TrojanDownloader:Win32/Unruy!pz?

TrojanDownloader:Win32/Unruy!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment