Malware

Ursu.125629 malicious file

Malware Removal

The Ursu.125629 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.125629 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Ursu.125629?


File Info:

crc32: 4035E38B
md5: 821d0b905c274756a0f6c6a5dbbbc6c0
name: 821D0B905C274756A0F6C6A5DBBBC6C0.mlw
sha1: b3af3794bc6392d145621f3c6045cefe41d3f72d
sha256: 2bfd63ca5d9cd5bc973026517cd1a79db6fce4c29748c7eff383125f2504ddc3
sha512: 4c1f6d14014d67e92671aaf137ffb2652ddb61bdff267a628152d622dd377687766ba62becde5bb39cc29cf6d21493e4f9c5664a1969b74ee6aad706e663d8b3
ssdeep: 1536:OkGhG6+tf3GxPbGXu+p4hZAGjgAw7YrZhm/F76HOiqEX2jezua8t:O9GfpXXp4MGjgU68uiWkuae
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: 5.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: 5
ProductVersion: 1.0.0.0
FileDescription: 5
OriginalFilename: 5.exe

Ursu.125629 also known as:

LionicTrojan.Win32.Ursu.4!c
ALYacGen:Variant.Ursu.125629
SangforTrojan.Win32.Sabsik.FL
Cybereasonmalicious.05c274
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Ursu.125629
MicroWorld-eScanGen:Variant.Ursu.125629
Ad-AwareGen:Variant.Ursu.125629
McAfee-GW-EditionRDN/Generic.dx
FireEyeGen:Variant.Ursu.125629
EmsisoftGen:Variant.Ursu.125629 (B)
GDataGen:Variant.Ursu.125629
McAfeeRDN/Generic.dx
MAXmalware (ai score=86)
MaxSecureTrojan.Malware.300983.susgen
FortinetPossibleThreat
AVGWin32:Malware-gen

How to remove Ursu.125629?

Ursu.125629 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment