Risk

Should I remove “UDS:RiskTool.Win32.HideProc.rv”?

Malware Removal

The UDS:RiskTool.Win32.HideProc.rv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:RiskTool.Win32.HideProc.rv virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine UDS:RiskTool.Win32.HideProc.rv?


File Info:

name: E70516A24F819289A94B.mlw
path: /opt/CAPEv2/storage/binaries/808014d2e30ecb7972fa359aeb1c683a64ca9eb0984e49ff5d65d65f494f9d05
crc32: E1E05818
md5: e70516a24f819289a94be45e03fb02f1
sha1: 4ee44d71ae5ded647f72547a4049b643a27b4811
sha256: 808014d2e30ecb7972fa359aeb1c683a64ca9eb0984e49ff5d65d65f494f9d05
sha512: 07f49a160017a7715614b9cbcc79a85600b110af82fda11899641f8398f482e82423c7002e5bfdff4eebb493efee4612114d61eb39be8bf7b965d21c56722886
ssdeep: 12288:I5sYi1hUjMHu5ll6CYlkBlN091dXuZSK:Ui3VslDIkBrmvXg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AB94E043B3F08872E4B31B354CABA6A95A777EF03939CD0A27E42C4D5D75680682B357
sha3_384: df7c9693dcd686da1b67643fc7822b47388416529574f405c6d37575276a90039deaa1257020e5d18defb11c537078b6
ep_bytes: 60be00e044008dbe0030fbffc787a400
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

UDS:RiskTool.Win32.HideProc.rv also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Xanfpezes.tp0q
MicroWorld-eScanTrojan.GenericKD.31067553
FireEyeGeneric.mg.e70516a24f819289
McAfeeGenericRXAA-FA!E70516A24F81
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.HideProc.Win32.209
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00568c681 )
K7GWTrojan ( 00568c681 )
Cybereasonmalicious.24f819
BitDefenderThetaGen:NN.ZexaF.36662.AmW@aeTKDFeb
CyrenW32/ABApplication.DZWC-8134
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32Win32/HideProc.O potentially unsafe
APEXMalicious
ClamAVWin.Trojan.Hideproc-77
Kasperskynot-a-virus:UDS:RiskTool.Win32.HideProc.rv
BitDefenderTrojan.GenericKD.31067553
NANO-AntivirusRiskware.Win32.HideProc.crvalg
AvastWin32:HideProc-N [PUP]
RisingRootKit.Win32.HideProc.l (CLOUD)
EmsisoftTrojan.GenericKD.31067553 (B)
F-SecureTrojan.TR/Rootkit.Gen
DrWebTool.HideProc.27
VIPRETrojan.GenericKD.31067553
TrendMicroTROJ_GEN.R002C0DF923
McAfee-GW-EditionBehavesLike.Win32.ToolHideProcess.gh
Trapminesuspicious.low.ml.score
SophosMal/Generic-R
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.31067553
JiangminRootkit.Xanfpezes.ak
GoogleDetected
AviraTR/Rootkit.Gen
MAXmalware (ai score=83)
Antiy-AVLRiskWare[RiskTool]/Win32.HideProc
ArcabitTrojan.Generic.D1DA0DA1
ZoneAlarmnot-a-virus:UDS:RiskTool.Win32.HideProc.rv
MicrosoftTrojan:Win32/Vindor!pz
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Banload.R569941
Acronissuspicious
ALYacTrojan.GenericKD.31067553
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DF923
TencentHackTool.Win32.ProcHide.ad
IkarusTrojan.SuspectCRC
FortinetRiskware/HideProc
AVGWin32:HideProc-N [PUP]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_90% (D)

How to remove UDS:RiskTool.Win32.HideProc.rv?

UDS:RiskTool.Win32.HideProc.rv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment