Trojan

Should I remove “Trojan:Win32/Urelas!pz”?

Malware Removal

The Trojan:Win32/Urelas!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Urelas!pz virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Urelas!pz?


File Info:

name: F16D28F42FB023708DAB.mlw
path: /opt/CAPEv2/storage/binaries/a71133db77394acd9592f4d4e13af228edf7b373cd8951746c38c0ea2f10f008
crc32: 16019544
md5: f16d28f42fb023708dab7e23f27f6be4
sha1: 65addb7a0e9f84db3769998f05106e44bb1c151d
sha256: a71133db77394acd9592f4d4e13af228edf7b373cd8951746c38c0ea2f10f008
sha512: 3ab06602da49db07ef0d7f339f297c1bc655f52d50978f7785a7aecd53e0b4590924cbb95eb215f457470ada06fd76678b85899357eb87cf1adb975a0a538a22
ssdeep: 6144:oKr3DaSA9d6c7Oq22ahgZqBKJtvLlcOBknI9EYdoT6X9MtMl7sBWMweiHalcBpMD:B3m5I2ahgZqBKJtv+ODyD27WW5XuL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FAC4AE113A40C075F76A1771091EF6F14AE9AC380AA4E68FF6787E3A5E301935A7724F
sha3_384: e3e5f89a8018d62b943ee71d3a03201b68e697e0c89f94be8876eb26541a069cd77b03e0a7d519c18ec382f58f0560e7
ep_bytes: 01f7d983ef018a450cfdf2ae83c70138
timestamp: 2013-10-17 07:43:47

Version Info:

0: [No Data]

Trojan:Win32/Urelas!pz also known as:

BkavW32.AIDetectMalware
ClamAVWin.Packed.Urelas-9879149-0
SkyhighBehavesLike.Win32.Generic.hh
MalwarebytesUrelas.Trojan.Downloader.DDS
SangforTrojan.Win32.Save.a
Cybereasonmalicious.a0e9f8
VirITWin95.Marburg
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
AvastFileRepMalware [Bd]
RisingTrojan.Gupboot!1.9CEA (CLASSIC)
BaiduWin32.Trojan.Urelas.a
TrendMicroTROJ_GEN.R03BC0DAB24
IkarusTrojan.Win32.Gupboot
Antiy-AVLTrojan[Downloader]/Win32.Urelas.ab
MicrosoftTrojan:Win32/Urelas!pz
XcitiumTrojWare.Win32.Urelas.SEE@5443e3
GDataWin32.Trojan.PSE.1BIPG8X
VaristW32/Urelas.AP.gen!Eldorado
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R03BC0DAB24
TencentTrojan.Win32.Urelas.16000132
SentinelOneStatic AI – Malicious PE
FortinetW32/Agent.NGS!tr
AVGFileRepMalware [Bd]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Urelas!pz?

Trojan:Win32/Urelas!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment