Malware

Ser.Ursu.1823 removal instruction

Malware Removal

The Ser.Ursu.1823 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ser.Ursu.1823 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ser.Ursu.1823?


File Info:

crc32: 873ED6D3
md5: c2f2e1df76e93c39049d1726595034ea
name: winlog.exe
sha1: 90f3f3ff3ae1ede664631bab7396d1a19cfe0676
sha256: 7977ac33b79881962befafb808b8d95e68667985fc93bdb89856ee8b7244c59c
sha512: 3c8bcce8e76351cdd02aefd87d4fd7b3157ff02091268e24bb7cb17daaf7a48590d110616b94385e82bb1ff5ae617ee4bae9e1d8e8a20f5c013161cf2e46e6fc
ssdeep: 24576:y6qG87/k3jvzreYRnkWPcpWXf14klUQgTc:y6W7/kzvzreY9kWkctnBp
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 2006 Inel Corporation. All rights reserved.
Assembly Version: 8.8.9.3
InternalName: igfxmgmt.exe
FileVersion: 9.6.3.1
CompanyName: Intel@2000 Corporation
LegalTrademarks: Copyright xa9 Intel 2001
Comments: Intel Graphics Modules
ProductName: Graphics Modules for Intel
ProductVersion: 9.6.3.1
FileDescription: systemupdater Modules
OriginalFilename: igfxmgmt.exe

Ser.Ursu.1823 also known as:

MicroWorld-eScanGen:Variant.Ser.Ursu.1823
McAfeeGenericRXJF-EO!C2F2E1DF76E9
SangforMalware
BitDefenderGen:Variant.Ser.Ursu.1823
Cybereasonmalicious.f76e93
ArcabitTrojan.Ser.Ursu.D71F
ESET-NOD32a variant of MSIL/Agent.CLC
APEXMalicious
ClamAVWin.Malware.Crimson-7443187-0
KasperskyHEUR:Trojan-Ransom.MSIL.Foreign.gen
Ad-AwareGen:Variant.Ser.Ursu.1823
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
Trapminemalicious.high.ml.score
FireEyeGen:Variant.Ser.Ursu.1823
EmsisoftGen:Variant.Ser.Ursu.1823 (B)
Endgamemalicious (high confidence)
ZoneAlarmHEUR:Trojan-Ransom.MSIL.Foreign.gen
AhnLab-V3Malware/Win32.RL_Generic.C3629686
ALYacGen:Variant.Ser.Ursu.1823
MAXmalware (ai score=82)
SentinelOneDFI – Malicious PE
GDataGen:Variant.Ser.Ursu.1823
Qihoo-360HEUR/QVM03.0.B7E5.Malware.Gen

How to remove Ser.Ursu.1823?

Ser.Ursu.1823 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment