Malware

Ursu.14627 removal

Malware Removal

The Ursu.14627 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.14627 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.14627?


File Info:

crc32: 39BD9495
md5: 03517193dedf0ccf1afd8b0488bc1e44
name: 03517193DEDF0CCF1AFD8B0488BC1E44.mlw
sha1: c5e9ef4cceafacccf5d764569bf357a0cfa0169e
sha256: 9ff6badd80d4538d0bbb50a2032bb108c9b78f2bcf09186280787f978b03d498
sha512: 7445ce51798524569ea90de6ee8e1a51aed3e648013a2470cb0831c74cc10f40f9bd0641f8c0868fb4a22a4e8cd19abd50caa3ea677e7e5a93358b2b24976c4c
ssdeep: 12288:uNgegH0pVRprMJw9FhBFDSe4LT6HyqJVy/P+Zl6QtUDnW8k6vYw4fE:Og4R6EFhvD7UOyEAZVhA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0

Ursu.14627 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0052c8a31 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.14922
CynetMalicious (score: 100)
ALYacTrojan.Ransom.LockyCrypt
CylanceUnsafe
SangforPUP.Win32.Ursu.14627
CrowdStrikewin/malicious_confidence_70% (D)
AlibabaBackdoor:Win32/Generic.ca9a3785
K7GWTrojan ( 0052c8a31 )
Cybereasonmalicious.3dedf0
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Ramnit-7076131-0
BitDefenderGen:Variant.Ursu.14627
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Variant.Ursu.14627
Ad-AwareGen:Variant.Ursu.14627
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34690.Lu0@a0!U4dgi
VIPRETrojan-Dropper.Win32.Resdro.b (v) (not malicious)
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
FireEyeGeneric.mg.03517193dedf0ccf
EmsisoftGen:Variant.Ursu.14627 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Locky.dot
WebrootW32.Malware.Gen
MicrosoftRansom:Win32/Aicat.A!ml
GDataGen:Variant.Ursu.14627
Acronissuspicious
McAfeeBackDoor-EXZ
MAXmalware (ai score=93)
VBA32Trojan.Encoder
MalwarebytesMalware.AI.4004973536
PandaTrj/CI.A
RisingTrojan.Ransom-Locky!8.4655 (CLOUD)
YandexTrojan.Encoder!GmC5DucJB3M
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ursu.14627?

Ursu.14627 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment