Malware

Win32/Agent.UHC removal instruction

Malware Removal

The Win32/Agent.UHC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.UHC virus can do?

  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Spanish (Modern)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Checks for the presence of known windows from debuggers and forensic tools
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Win32/Agent.UHC?


File Info:

crc32: 05BF3F4E
md5: e0f12b844bc1e496f3ad7b2bcbaed770
name: E0F12B844BC1E496F3AD7B2BCBAED770.mlw
sha1: 179d762bf9673d33c2e6622f7ce5fa3bf9c4bb0c
sha256: 1e439ef455d28bcfceaff173c2ff82abd1c4c1d798a6d246e29f9c56319b46b6
sha512: 56dff76a4a572ef9da5ab209528f8777e9b2972e835e04191e41b17dc958489a48ca29e29719b7f4dda3aeb541eee49d540f9f8fc3984e27c7ab8b01daa40c36
ssdeep: 768:NFY3mU9X36oGEGfWiMJZBnb4xif2zMN523yWvp4IleImE2VXYGZspBuyiPf+HJs:VU9qEVnE14N5cPrmpZsDbeFlYJQ9S3
type: PE32 executable (console) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Win32/Agent.UHC also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Strictor.250959
CylanceUnsafe
SangforTrojan.Win32.Tumader.gen
CrowdStrikewin/malicious_confidence_70% (D)
Cybereasonmalicious.44bc1e
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.UHC
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:Trojan.Win32.Tumader.gen
BitDefenderGen:Variant.Strictor.250959
NANO-AntivirusTrojan.Win32.Razy.fcwolz
MicroWorld-eScanGen:Variant.Strictor.250959
TencentWin32.Trojan.Razy.Akyj
Ad-AwareGen:Variant.Strictor.250959
SophosMal/Generic-S
ComodoMalware@#2kvteme9s8uau
F-SecureHeuristic.HEUR/AGEN.1105748
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Downloader.lc
FireEyeGeneric.mg.e0f12b844bc1e496
EmsisoftGen:Variant.Strictor.250959 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1105748
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Strictor.D3D44F
GDataGen:Variant.Strictor.250959
AhnLab-V3Malware/Win32.Generic.C2618847
McAfeeArtemis!E0F12B844BC1
MAXmalware (ai score=96)
VBA32BScope.Trojan.Agent
MalwarebytesMalware.Heuristic.1003
PandaTrj/GdSda.A
YandexTrojan.GenAsa!IBZAkaS4Mbg
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.SPG!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Agent.UHC?

Win32/Agent.UHC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment