Ransom

Ransom.Ursu.99 removal

Malware Removal

The Ransom.Ursu.99 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.Ursu.99 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ransom.Ursu.99?


File Info:

crc32: 9CA049EC
md5: 027ec7d3d61ecef15e42a0ffed3227fc
name: 027EC7D3D61ECEF15E42A0FFED3227FC.mlw
sha1: 8a9334ba5fc1ed81baac3902f1d961e5b958abb5
sha256: a9f6a39018de6f8fa54711bc8c0322c697d66d3bbf6ea6773445bd2597d7ccd3
sha512: 6533ace82771911a4ce0a1a9ea4108b0ba863f07a2dd86579c9937d49296f8bb9786298dd1d76ae57b08103e15c6a61f8f771eba60f2468e83c0748a3ebd8e81
ssdeep: 48:6e5SPbGvKHXgKE0bQO1xEyDTgegEYJ6YIGGDwqX+c8jAip9RGm6XLIkTnR11O2O:PKkO1xjoqFYIGkt4E3fFsgTgRzNt
type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Start.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Start.exe

Ransom.Ursu.99 also known as:

CynetMalicious (score: 99)
ALYacGen:Variant.Ransom.Ursu.99
BitDefenderGen:Variant.Ransom.Ursu.99
Cybereasonmalicious.3d61ec
ESET-NOD32a variant of MSIL/Riskware.KnownBe4.E.gen
APEXMalicious
MicroWorld-eScanGen:Variant.Ransom.Ursu.99
Ad-AwareGen:Variant.Ransom.Ursu.99
FireEyeGeneric.mg.027ec7d3d61ecef1
EmsisoftGen:Variant.Ransom.Ursu.99 (B)
AviraHEUR/AGEN.1140278
GDataGen:Variant.Ransom.Ursu.99
MAXmalware (ai score=87)
MalwarebytesRiskWare.RansomSimulator
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Razy.41!tr

How to remove Ransom.Ursu.99?

Ransom.Ursu.99 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment