Malware

What is “Win32/Agent.UOU”?

Malware Removal

The Win32/Agent.UOU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Agent.UOU virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Win32/Agent.UOU?


File Info:

name: 0D3F2FC4ADC8A5CA4DCD.mlw
path: /opt/CAPEv2/storage/binaries/2bac24a519283f5817d0b21a2add41307e3c826c17a5eabe161fc1f4478e8115
crc32: D0BF61B0
md5: 0d3f2fc4adc8a5ca4dcd32602e274f22
sha1: f2269207684c89f22805908fd261721c0a9097c6
sha256: 2bac24a519283f5817d0b21a2add41307e3c826c17a5eabe161fc1f4478e8115
sha512: a8bdf7937103986e73ad806afc00a1911121ba0b784d948e9567d227d9786b40d7d63fb59076f403edf2b04a479fbcc3a88543fc72766d2480a841edac010f22
ssdeep: 12288:80/rWTpcPir7lzl43TTNIvvmv/8iuX1hY8iOhE/KfdSnsNWt:WTiPk7oTTOc/8iuDiOW//0W
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CBA49D2235B2C032D5A242704C7DEB6564AEBC344F715ADB73D41A3E9E702D3AB31E66
sha3_384: c8715cf6f29fe2275f117473b0ff83e2221c73e7c7be54974bfe55513ce5557efc82c466e547616ae9a4a9858d6503e1
ep_bytes: e83f080000e97afeffff8b4df464890d
timestamp: 2021-02-07 14:44:22

Version Info:

0: [No Data]

Win32/Agent.UOU also known as:

LionicTrojan.Win32.Mikey.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Mikey.112110
FireEyeGeneric.mg.0d3f2fc4adc8a5ca
McAfeeGenericRXAA-AA!0D3F2FC4ADC8
K7AntiVirusUnwanted-Program ( 0056a5271 )
AlibabaTrojan:Win32/Generic.7dcc4342
K7GWUnwanted-Program ( 0056a5271 )
SymantecRansom.Wannacry
ESET-NOD32a variant of Win32/Agent.UOU
APEXMalicious
BitDefenderGen:Variant.Mikey.112110
TencentMalware.Win32.Gencirc.11b9ec34
Ad-AwareGen:Variant.Mikey.112110
SophosMal/Generic-S
ZillyaTool.NetPass.Win32.7900
McAfee-GW-EditionBehavesLike.Win32.Trojan.gh
EmsisoftGen:Variant.Mikey.112110 (B)
IkarusTrojan.Win32.Agent
GDataGen:Variant.Mikey.112110
JiangminTrojanDownloader.Delf.auad
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Mikey.D1B5EE
ViRobotTrojan.Win32.Z.Mikey.453808
MicrosoftTrojan:Win32/Woreflint.A!cl
CynetMalicious (score: 100)
ALYacGen:Variant.Mikey.112110
MAXmalware (ai score=80)
VBA32BScope.Trojan.Infospy
TrendMicro-HouseCallTROJ_GEN.R002H09L721
RisingTrojan.Generic@ML.92 (RDML:rfE66zYI3a2DF2A/0CSMIw)
YandexTrojan.Agent!iBtdDmhjLI8
SentinelOneStatic AI – Suspicious PE
FortinetW32/Agent.UOU!tr
Cybereasonmalicious.4adc8a
PandaTrj/Genetic.gen

How to remove Win32/Agent.UOU?

Win32/Agent.UOU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment