Malware

Ursu.188572 removal

Malware Removal

The Ursu.188572 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.188572 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ursu.188572?


File Info:

crc32: 7ACC63A7
md5: 3c95d8ef16f30b0473316f65733a2810
name: 3C95D8EF16F30B0473316F65733A2810.mlw
sha1: ad2a66bd230bbb78b26edc034ff00d37cfd53025
sha256: 032d0e1e3fd1bc6a65216c2bd6a730aefe6f62737cb2c04e5895908c6ceaf463
sha512: 61500156a7cd6f29314cb19fdd73c04d47aa5570793a02ee89527b8fca7c56fb13e46bfe3b11df9bf392330a94c3427b89f50fac0a9db6289835ce5b8413ec3c
ssdeep: 384:3phOFUd1iOxuGjI1Ifrpuh/wd6wzXI+dCx+m2csvw7zfT+44aUZVG2qbmqJmWyF:5gkkIpuh1ThyZsLmDBFeqlQaUJJ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: MSVCM80.DLL
FileVersion: 8.00.50727.762
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Visual Studioxae 2005
ProductVersion: 8.00.50727.762
FileDescription: Microsoftxae C Runtime Library
OriginalFilename: MSVCM80.DLL
Translation: 0x0409 0x04b0

Ursu.188572 also known as:

K7AntiVirusTrojan ( 00454e201 )
LionicTrojan.Win32.Generic.mzPP
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ursu.188572
CylanceUnsafe
ZillyaTrojan.Disfa.Win32.72249
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/Disfa.14d817bc
K7GWTrojan ( 00454e201 )
Cybereasonmalicious.f16f30
CyrenW32/Ursu.AA.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.BSL
APEXMalicious
AvastMSIL:GenMalicious-FJ [Trj]
KasperskyHEUR:Trojan.MSIL.Disfa.gen
BitDefenderGen:Variant.Ursu.188572
NANO-AntivirusTrojan.Win32.Disfa.fknjfx
MicroWorld-eScanGen:Variant.Ursu.188572
TencentMsil.Trojan.Disfa.Lmuv
Ad-AwareGen:Variant.Ursu.188572
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34294.cm0@aeBTZ3ji
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.3c95d8ef16f30b04
EmsisoftGen:Variant.Ursu.188572 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.Gen
Antiy-AVLTrojan/Generic.ASMalwS.299188D
MicrosoftTrojan:Win32/Occamy.C03
ArcabitTrojan.Ursu.D2E09C
GDataGen:Variant.Ursu.188572
Acronissuspicious
McAfeeArtemis!3C95D8EF16F3
MAXmalware (ai score=100)
VBA32TScope.Trojan.MSIL
IkarusTrojan.MSIL.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injector.PEO!tr
AVGMSIL:GenMalicious-FJ [Trj]
Paloaltogeneric.ml

How to remove Ursu.188572?

Ursu.188572 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment