Trojan

About “Trojan:Win32/Urelas!pz” infection

Malware Removal

The Trojan:Win32/Urelas!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Urelas!pz virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Urelas!pz?


File Info:

name: A3135AE869808FFE5361.mlw
path: /opt/CAPEv2/storage/binaries/aadc4f6160f1171c5240886494826bfd86f4dea5ff8a5684eb536bf85ee15e1e
crc32: DBDEC456
md5: a3135ae869808ffe53611b23cf0ef43d
sha1: bcbae349dfc997955316e4be17cbb76882acb8b9
sha256: aadc4f6160f1171c5240886494826bfd86f4dea5ff8a5684eb536bf85ee15e1e
sha512: 8fa7e2f9c8dd0842e1123994b42ba5adddab69d147f986473789c4c8ea022a2f290399e05bd2a2c8e4a4c8a4b214938d8cd03178618c7d09d9883a969e3abe6f
ssdeep: 768:P73EWAzAdl4Wxn9Tqfj/qhxZPWBBUC+cYuq0UwwbchsR2KRtQbB/8qi34R2/QASU:P7LvuaeB6C+A/9wbcHKRtQb52dy2l
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T132240240BC4A5AEED285C17E662FCFEFB1730C2B62A276411BC1361C5598F1AE54A278
sha3_384: 0eef67226957807bc5bdaea9175d5d8acd247176c910290bb2bb08de4f0a206cb05973cfd1d4c163355155ae87f1b31c
ep_bytes: 00000000000000000000000000000000
timestamp: 2013-08-07 05:36:17

Version Info:

0: [No Data]

Trojan:Win32/Urelas!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Urelas.4!c
CynetMalicious (score: 100)
FireEyeGeneric.mg.a3135ae869808ffe
SkyhighBehavesLike.Win32.Generic.dz
McAfeeGenericRXAA-FA!A3135AE86980
Cylanceunsafe
SangforTrojan.Win32.Urelas.V8r7
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/Urelas.fdf1a9ba
K7GWRiskware ( 0040eff71 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Malware.Urelas-10016440-0
SUPERAntiSpywareTrojan.Agent/Gen-Urelas
AvastWin32:Evo-gen [Trj]
SophosMal/Generic-S
IkarusTrojan.Win32.Agent
GoogleDetected
Antiy-AVLTrojan/Win32.Wecod
Kingsoftmalware.kb.a.999
MicrosoftTrojan:Win32/Urelas!pz
GridinsoftTrojan.Win32.Agent.sa
GDataWin32.Trojan.PSE.8PVIRE
VaristW32/Urelas.EB.gen!Eldorado
AhnLab-V3Trojan/Win32.Urelas.R79715
MalwarebytesGeneric.Malware.AI.DDS
RisingTrojan.Generic@AI.100 (RDMK:ZDLwRRMwXoYDP9alP8EkOw)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.216104585.susgen
FortinetW32/Urelas.EB!tr
AVGWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Trojan:Win32/Urelas!pz?

Trojan:Win32/Urelas!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment