Malware

How to remove “Ursu.124900”?

Malware Removal

The Ursu.124900 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.124900 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.124900?


File Info:

crc32: 6AEA10A3
md5: 5d4a0ed0d7565979a94214ef713ab220
name: injector.exe
sha1: 6ff0653bb77952606297c1b2027968f8e2257bb3
sha256: 53ea44fd55cb030fe05d5a9e7a12ee4e2fd6bcb885c535257e44250dae8909de
sha512: 75ddfabca8e34da64d58681d80acd14288956c6132fd5bcf26b005b940d9d29bc304439e0196d5e6bcf5c25e9d70b1f42373df785e567dd260e9e69ad4d43754
ssdeep: 384:JHvx4qruRJW5obD1KiLLyI/2DrUNA/jLP5+Tf6fB:F5ruLdgiPfWp/XPkTfW
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright Niggersxa9 2017
Assembly Version: 1.0.0.0
InternalName: injector.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Jturn's supre private dll injector
ProductVersion: 1.0.0.0
FileDescription: Jturn's supre private dll injector
OriginalFilename: injector.exe

Ursu.124900 also known as:

MicroWorld-eScanGen:Variant.Ursu.124900
CAT-QuickHealTrojan.IGENERIC
McAfeeRDN/Generic.dx
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7GWUnwanted-Program ( 004bc75a1 )
K7AntiVirusUnwanted-Program ( 004bc75a1 )
Invinceaheuristic
BaiduWin32.Trojan.WisdomEyes.16070401.9500.9956
CyrenW32/GenBl.5D4A0ED0!Olympus
SymantecTrojan.Gen.2
TrendMicro-HouseCallTROJ_GEN.R002C0PL817
AvastWin32:Malware-gen
GDataGen:Variant.Ursu.124900
BitDefenderGen:Variant.Ursu.124900
NANO-AntivirusTrojan.Win32.DllInject.evulgk
AegisLabTroj.Atraps.Gen!c
Ad-AwareGen:Variant.Ursu.124900
SophosMal/MSIL-AX
F-SecureGen:Variant.Ursu.124900
TrendMicroTROJ_GEN.R002C0PL817
McAfee-GW-EditionRDN/Generic.dx
EmsisoftGen:Variant.Ursu.124900 (B)
AviraTR/ATRAPS.Gen
ArcabitTrojan.Ursu.D1E7E4
MicrosoftTrojan:Win32/Bitrep.A
ALYacGen:Variant.Ursu.124900
AVwareTrojan.Win32.Generic!BT
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/DllInject.BK potentially unsafe
TencentWin32.Trojan.Atraps.Sxew
YandexRiskware.Agent!
SentinelOnestatic engine – malicious
eGambitTrojan.Generic
FortinetMSIL/DllInject.AX
AVGWin32:Malware-gen
Cybereasonmalicious.0d7565
Paloaltogeneric.ml
CrowdStrikemalicious_confidence_80% (D)

How to remove Ursu.124900?

Ursu.124900 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment