Trojan

Should I remove “UDS:Trojan.Win32.Wecod”?

Malware Removal

The UDS:Trojan.Win32.Wecod is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.Win32.Wecod virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine UDS:Trojan.Win32.Wecod?


File Info:

name: 0813149E1E12C30631CA.mlw
path: /opt/CAPEv2/storage/binaries/c645cb69721fdfceff9f0296d9c5d9393b6a6aac3d7310924f887846a6b47dc0
crc32: E5911631
md5: 0813149e1e12c30631cad91e3f0b7b81
sha1: 5ca96cb51459947ab4ef1d5136920839ecd61e1e
sha256: c645cb69721fdfceff9f0296d9c5d9393b6a6aac3d7310924f887846a6b47dc0
sha512: 9a9e2366bdba0e3ec95296c7d35f74e06813913bc737a3081431576923f4ffaf7f41212569797138cdbc5d05fc5ad850d5a99e4960c693a834d3c8d5cc137a19
ssdeep: 6144:IpBNE76ulDEle2mpeLNghUyVPwQISzqJRyR:gieqglLMe+KNc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12BD47A10768080B2E3990770091AF7E54A69AE391799A5CFF27C3E365E322D35B7724F
sha3_384: 6687acad5aea4dbf0ae7b95122d65a65935132c1e12179abbd9489a218fa3f532c7aea356ba9e9c30afad52ac51bc23c
ep_bytes: 00000000000000000000000000000000
timestamp: 2013-08-26 07:12:45

Version Info:

0: [No Data]

UDS:Trojan.Win32.Wecod also known as:

BkavW32.AIDetectMalware
DrWebTrojan.Siggen6.36651
MicroWorld-eScanTrojan.GenericKDZ.98586
ClamAVWin.Malware.Mikey-9891201-0
FireEyeGeneric.mg.0813149e1e12c306
ALYacTrojan.GenericKDZ.98586
MalwarebytesCardSpy.Spyware.Stealer.DDS
VIPRETrojan.GenericKDZ.98586
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Urelas.DN.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ZonerProbably Heur.ExeHeaderL
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Wecod
BitDefenderTrojan.GenericKDZ.98586
AvastWin32:Malware-gen
TencentTrojan.Win32.CardSpy.16000130
EmsisoftTrojan.GenericKDZ.98586 (B)
BaiduWin32.Trojan.Urelas.d
TrendMicroTROJ_GEN.R03BC0DEQ23
McAfee-GW-EditionBehavesLike.Win32.Generic.jt
Trapminemalicious.high.ml.score
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.102K66A
Antiy-AVLTrojan/Win32.Wecod
XcitiumTrojWare.Win32.Urelas.AB@56lb34
ArcabitTrojan.Generic.D1811A
ZoneAlarmUDS:Trojan.Win32.Wecod
MicrosoftTrojan:Win32/Urelas.JU!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Urelas.R567676
McAfeeArtemis!0813149E1E12
MAXmalware (ai score=89)
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DEQ23
RisingSpyware.CardSpy!1.A1A8 (CLASSIC)
IkarusTrojan.Crypt
MaxSecureVirus.Mabezat.Dam
FortinetW32/CardSpy.PRKJ!tr
AVGWin32:Malware-gen
Cybereasonmalicious.514599
DeepInstinctMALICIOUS

How to remove UDS:Trojan.Win32.Wecod?

UDS:Trojan.Win32.Wecod removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment