Malware

Ursu.182340 information

Malware Removal

The Ursu.182340 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.182340 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ursu.182340?


File Info:

crc32: C0B215A8
md5: 60dc9ebed056c8aa23c7c8b2ff37413e
name: 60DC9EBED056C8AA23C7C8B2FF37413E.mlw
sha1: 4328f45eb8f6207254f40bce3157f3201a946d1a
sha256: 1dc49a269ba1b68819292efe59ce8549cc2f7e2643d204cd843fce8a59b3b1ae
sha512: 3797cf7511553c0d8671b1099b5e1d047356ab1bb8d408856229667a3cea7156aa4f9792e06eded1347bcf9df417d1df043d287e929179f72cc5babfc4fbc1be
ssdeep: 3072:VJp8JMuJgHzPV3CIxbNaSbhShGH+kadcnzg32GhNvd:V2QHzsWAghgeEei2GhN
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: ww.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: ww
ProductVersion: 1.0.0.0
FileDescription: ww
OriginalFilename: ww.exe

Ursu.182340 also known as:

K7AntiVirusTrojan ( 0052e30e1 )
Elasticmalicious (high confidence)
ClamAVWin.Packed.Bladabindi-7611924-0
ALYacGen:Variant.Ursu.182340
ZillyaTrojan.Kryptik.Win32.3604230
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0052e30e1 )
Cybereasonmalicious.ed056c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.NSI
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ursu.182340
NANO-AntivirusTrojan.Win32.Kryptik.farpvt
MicroWorld-eScanGen:Variant.Ursu.182340
TencentMalware.Win32.Gencirc.114cefeb
Ad-AwareGen:Variant.Ursu.182340
ComodoMalware@#36qgnn3hf7l9t
BitDefenderThetaGen:NN.ZemsilF.34266.hm0@aikVcJi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.60dc9ebed056c8aa
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1106933
eGambitUnsafe.AI_Score_59%
Antiy-AVLTrojan/Generic.ASMalwS.25DF761
GDataGen:Variant.Ursu.182340
AhnLab-V3Trojan/Win32.Bladabindi.C2523683
VBA32TScope.Trojan.MSIL
MAXmalware (ai score=98)
PandaTrj/GdSda.A
YandexTrojan.Agent!EgbYvaLAOiQ
IkarusTrojan.MSIL.Crypt
FortinetMSIL/Kryptik.NSI!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ursu.182340?

Ursu.182340 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment