Risk

UDS:RiskTool.Win32.CEdbk removal

Malware Removal

The UDS:RiskTool.Win32.CEdbk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:RiskTool.Win32.CEdbk virus can do?

  • Sample contains Overlay data
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the embedded win api malware family
  • Deletes executed files from disk
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine UDS:RiskTool.Win32.CEdbk?


File Info:

name: CBC73252433629953D8B.mlw
path: /opt/CAPEv2/storage/binaries/8704abd85381dc39c560b3c97b9a57bcc90fda6a0ad3bfa4e1add60b63e222ec
crc32: 0D778F06
md5: cbc73252433629953d8b762ae8449a9a
sha1: 062ba9355bd65af6f5f3bd93e23a00f3bafb323c
sha256: 8704abd85381dc39c560b3c97b9a57bcc90fda6a0ad3bfa4e1add60b63e222ec
sha512: e29410f6254f868f5dbbd3f57a31a1f08039be73682013345262fab10916ded8d21cd7d3e8580a2fb2edd3776f200fe63cee2f6ec6efa36601b8731104b2f0a2
ssdeep: 196608:/7uRJf5d1pkl+fiaCLZmlltpeCuYxnRlc9trLEbNDh8Kle:/7uP5L/6LZmlASnTMzEe
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C6863385AA41C27BE46239B54B8886B149E1FA346432E2EFB3C5171DD7F3FA15E3C016
sha3_384: 80ce19a2a650391509331b8e2407840ea19e685f91e88453b3eded4566037a815f5a8fe70d97629662fab4f9499f1db7
ep_bytes: e81c1b0000e978feffff8bff558bec51
timestamp: 2013-06-28 14:45:44

Version Info:

0: [No Data]

UDS:RiskTool.Win32.CEdbk also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win64.Cobalt.tpMn
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKD.65106791
FireEyeGeneric.mg.cbc7325243362995
SkyhighBehavesLike.Win32.Sality.wc
McAfeeArtemis!CBC732524336
Cylanceunsafe
ZillyaTool.CheatEngine.Win32.19177
SangforWorm.Win32.Save.a
K7AntiVirusUnwanted-Program ( 004ba1a41 )
K7GWUnwanted-Program ( 004ba1a41 )
CrowdStrikewin/grayware_confidence_90% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/HackTool.CheatEngine.AF potentially unsafe
CynetMalicious (score: 100)
Kasperskynot-a-virus:UDS:RiskTool.Win32.CEdbk
BitDefenderTrojan.GenericKD.65106791
AvastWin32:Malware-gen
SophosGeneric Reputation PUA (PUA)
VIPRETrojan.GenericKD.65106791
Trapminemalicious.high.ml.score
EmsisoftApplication.Downloader (A)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Riskware.Hacktool.D
Antiy-AVLHackTool[Hoax]/Win32.CheatEngine.a
ArcabitTrojan.Generic.D3E17367
ZoneAlarmnot-a-virus:UDS:RiskTool.Win32.CEdbk
MicrosoftPUA:Win32/Puwaders.C!ml
ALYacTrojan.GenericKD.65106791
MAXmalware (ai score=88)
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Generic@AI.97 (RDML:Q8x3o8MGg/iALeKtt3hCIA)
IkarusPUA.HackTool.Cheatengine
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/CheatEngine
AVGWin32:Malware-gen
Cybereasonmalicious.55bd65
DeepInstinctMALICIOUS

How to remove UDS:RiskTool.Win32.CEdbk?

UDS:RiskTool.Win32.CEdbk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment