Trojan

How to remove “Trojan:Win32/Uniemv.B”?

Malware Removal

The Trojan:Win32/Uniemv.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Uniemv.B virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • Mimics the system’s user agent string for its own requests
  • A process attempted to delay the analysis task.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Behavior consistent with a dropper attempting to download the next stage.
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan:Win32/Uniemv.B?


File Info:

crc32: 1F3C1B8C
md5: 08d1fb5d17efa73158d1523716d89e90
name: 08D1FB5D17EFA73158D1523716D89E90.mlw
sha1: 4d51e224a79294d9f4a38372875e0644db41ea2e
sha256: 29f65100d09f0c508e350c4f59e2ddec24808cd87c0f89130ae0ba6eb42629ae
sha512: 65453e8be9fa7f105f1dfebe503340c833ea5202f3338445bc471ebe152b99208a5dfcfeedb106eeed164bd0da96d02536b37fe9c456ab40e0fb78ee711665ae
ssdeep: 768:VlZN6AVOeKPC938q0Xam+6+1jwVQao4qO4ux:VT1jd4XadwVLo4Yu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Uniemv.B also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0055dd191 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader11.34130
CynetMalicious (score: 100)
ALYacGenPack:Generic.Malware.SFB!dld!.32A45608
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.22382
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Blocker.620d3c71
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.d17efa
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.CLHH
ZonerTrojan.Win32.26389
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.frmb
BitDefenderGenPack:Generic.Malware.SFB!dld!.32A45608
NANO-AntivirusTrojan.Win32.Kryptik.dfezfg
ViRobotTrojan.Win32.Agent.233472.AA
MicroWorld-eScanGenPack:Generic.Malware.SFB!dld!.32A45608
TencentWin32.Trojan.Blocker.Hyv
Ad-AwareGenPack:Generic.Malware.SFB!dld!.32A45608
SophosMal/Generic-S
ComodoTrojWare.Win32.Gatak.ADK@5j7ton
BitDefenderThetaGen:NN.ZexaF.34608.oCW@aCzup5e
VIPRETrojan.Win32.Generic!BT
TrendMicroTSPY_DRIDEX.SMN2
McAfee-GW-EditionDownloader-FAOB!08D1FB5D17EF
FireEyeGeneric.mg.08d1fb5d17efa731
EmsisoftGenPack:Generic.Malware.SFB!dld!.32A45608 (B)
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1119983
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Uniemv.B
ArcabitGenPack:Generic.Malware.SFB!dld!.32A45608
AegisLabTrojan.Win32.Blocker.j!c
ZoneAlarmTrojan-Ransom.Win32.Blocker.frmb
GDataGenPack:Generic.Malware.SFB!dld!.32A45608
TACHYONTrojan/W32.Blocker.233472.O
AhnLab-V3Trojan/Win32.Generic.R119440
McAfeeDownloader-FAOB!08D1FB5D17EF
MAXmalware (ai score=100)
VBA32Hoax.Blocker
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_DRIDEX.SMN2
RisingTrojan.Uniemv!8.955 (CLOUD)
SentinelOneStatic AI – Suspicious PE
FortinetW32/Kryptik.DFAR!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HxQB45IA

How to remove Trojan:Win32/Uniemv.B?

Trojan:Win32/Uniemv.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment