Trojan

TrojanDownloader:O97M/Ursnif.JK!MTB removal instruction

Malware Removal

The TrojanDownloader:O97M/Ursnif.JK!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:O97M/Ursnif.JK!MTB virus can do?

  • The office file contains anomalous features
  • Network activity detected but not expressed in API logs

How to determine TrojanDownloader:O97M/Ursnif.JK!MTB?


File Info:

crc32: F7B42397
md5: 472ace8642e87994658ff5912d12cbce
name: upload_file
sha1: 285fb722cfe26ebe2dc267b04826415dd5d20fed
sha256: 3663f0b8534a90d0d1a363a5c810d285d03e33af52b431650348ba22a80c9190
sha512: ff23edeb8c802895cbda3ae59a14efc1931f557c03ab66c1718770f72be03b626bdbc7a3ad1c032f4f48e9165f8a889f5554d181938e6aee680a413f7bf4fe57
ssdeep: 6144:3NHBCfIlbT7/WvdxwRa8uzSxQ75KK/OGTZ:3r/lbTbgSa8xi1
type: Composite Document File V2 Document, Little Endian, Os: Windows, Version 10.0, Code page: 1252, Name of Creating Application: Microsoft Excel, Create Time/Date: Thu Oct 1 03:52:46 2020, Last Saved Time/Date: Thu Oct 1 05:32:05 2020, Security: 1

Version Info:

0: [No Data]

TrojanDownloader:O97M/Ursnif.JK!MTB also known as:

ALYacTrojan.Downloader.XLS.gen
AegisLabTrojan.MSExcel.Generic.4!c
K7AntiVirusTrojan ( 005690e01 )
K7GWTrojan ( 005690e01 )
CyrenTrojan.DGKU-1
SymantecTrojan.Gen.2
ESET-NOD32a variant of Generik.HHGIBHJ
AvastOther:Malware-gen [Trj]
ViRobotXLS.Z.Agent.212992.BH
SophosTroj/DocDl-AAQY
Comodofls.noname@0
F-SecureExploit.EXP/Zloader.R
InvinceaTroj/DocDl-AAQY
McAfee-GW-EditionRDN/Gozi
IkarusEmbedded.Excel4Macro
AviraEXP/Zloader.R
MicrosoftTrojanDownloader:O97M/Ursnif.JK!MTB
GDataMacro.Trojan-Downloader.Encrypted.A
CynetMalicious (score: 85)
McAfeeRDN/Gozi
FortinetMSExcel/Agent.CBH!tr
AVGOther:Malware-gen [Trj]
Qihoo-360Generic/Trojan.Exploit.cba

How to remove TrojanDownloader:O97M/Ursnif.JK!MTB?

TrojanDownloader:O97M/Ursnif.JK!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment