Trojan

Trojan:Win32/Ursnif.PA!MTB removal guide

Malware Removal

The Trojan:Win32/Ursnif.PA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Ursnif.PA!MTB virus can do?

  • Anomalous binary characteristics

How to determine Trojan:Win32/Ursnif.PA!MTB?


File Info:

crc32: CC7A1254
md5: 2d93116851211adfa6deba0a297a1c86
name: 2D93116851211ADFA6DEBA0A297A1C86.mlw
sha1: 5be2f48e6ba3f71f1941b7fb8cc925c7fa4fd0bf
sha256: d365d2272c6be7f3420d9083251496bfa2f48e4b2ac2f3563b65c3b246714a18
sha512: 0c26172f36100310f9b28aaf37b61bf13aaf87c21c0b304310c4d6d319e4086d2a57af63b4ea125a8215f2ea1bf812ba56758a0bff27a4493461c99e5ead5477
ssdeep: 3072:b3bHkAJWWMRiqyvbSdxpPiwb1n2PRqi9toTglEIxcCEVDRw4HiHIiBX9SqLjzXGN:DbvEvPVZ2pqi9WeEIq1KoiBXUWkZ5
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Trojan:Win32/Ursnif.PA!MTB also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44622807
ALYacSpyware.Ursnif
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderTrojan.GenericKD.44622807
K7GWSpyware ( 00552cf91 )
K7AntiVirusSpyware ( 00552cf91 )
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyBackdoor.Win32.Androm.uhqn
AlibabaTrojanSpy:Win32/Ursnif.9e4eac1c
Ad-AwareTrojan.GenericKD.44622807
EmsisoftTrojan.GenericKD.44622807 (B)
F-SecureTrojan.TR/AD.Ursnif.klmzd
TrendMicroTROJ_FRS.VSNW17K20
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.2d93116851211adf
SophosMal/Generic-S
IkarusTrojan-Spy.Agent
WebrootW32.Trojan.Gen
AviraTR/AD.Ursnif.klmzd
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Ursnif.PA!MTB
ArcabitTrojan.Generic.D2A8E3D7
ZoneAlarmBackdoor.Win32.Androm.uhqn
GDataTrojan.GenericKD.44622807
CynetMalicious (score: 100)
McAfeeArtemis!2D9311685121
MAXmalware (ai score=87)
VBA32BScope.TrojanBanker.Gozi
MalwarebytesTrojan.Ursnif
ESET-NOD32Win32/Spy.Ursnif.CT
TrendMicro-HouseCallTROJ_FRS.VSNW17K20
TencentWin32.Backdoor.Androm.Hufz
SentinelOneStatic AI – Suspicious PE
FortinetW32/Ursnif.CT!tr.spy
BitDefenderThetaGen:NN.ZedlaF.34634.lC5@aC44jUb
AVGFileRepMalware

How to remove Trojan:Win32/Ursnif.PA!MTB?

Trojan:Win32/Ursnif.PA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment