Malware

Ursu.191958 removal instruction

Malware Removal

The Ursu.191958 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.191958 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ursu.191958?


File Info:

crc32: 16170CF0
md5: 199f2c2efb35131dd3c283a492682fdc
name: 199F2C2EFB35131DD3C283A492682FDC.mlw
sha1: c3a436738ae99323c9c960c8b3c27e1be50fe022
sha256: de5cfab58326080e50b775fa08d942a66d5f7dd3d93c2547be2953e145173019
sha512: 4a030c128a62eedc3ba9b919c57b1b8a5902878eaada71126c3295f00a50f356f7db2e84da4eda243fcc9c3687b4c00067a94331674bd38e9586eaa07703b0cc
ssdeep: 1536:MwD6VwLLhTUxsaj+DC8b7RcHIxCLsVm+lzbObUXKKQmEQ/CvsZeLr+zXjNCDB:MwDCwLLMj+DC8b7RcHIxCLsVm+lzbOb
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2017
Assembly Version: 1.0.0.0
InternalName: dll.exe
FileVersion: 1.0.0.0
ProductName: dll
ProductVersion: 1.0.0.0
FileDescription: dll
OriginalFilename: dll.exe

Ursu.191958 also known as:

MicroWorld-eScanGen:Variant.Ursu.191958
FireEyeGeneric.mg.199f2c2efb35131d
ALYacGen:Variant.Ursu.191958
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Disfa.4!c
SangforMalware
K7AntiVirusTrojan-Downloader ( 005035551 )
BitDefenderGen:Variant.Ursu.191958
K7GWTrojan-Downloader ( 005035551 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZemsilF.34804.dq0@ay4GuDf
SymantecML.Attribute.HighConfidence
AvastWin32:Malware-gen
ClamAVWin.Dropper.Zusy-7619646-0
KasperskyTrojan.MSIL.Disfa.lncq
AlibabaTrojan:MSIL/Disfa.ef585677
NANO-AntivirusTrojan.Win32.SpyGate.ekpqmt
TencentMsil.Trojan.Disfa.Dzul
Ad-AwareGen:Variant.Ursu.191958
ComodoMalware@#9r58pvtnugj3
F-SecureHeuristic.HEUR/AGEN.1101154
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Ursu.191958 (B)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1101154
Antiy-AVLTrojan/MSIL.Disfa
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Ursu.D2EDD6
ZoneAlarmTrojan.MSIL.Disfa.lncq
GDataGen:Variant.Ursu.191958
CynetMalicious (score: 85)
McAfeeArtemis!199F2C2EFB35
MAXmalware (ai score=82)
VBA32Trojan.MSIL.Disfa
PandaTrj/GdSda.A
APEXMalicious
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.CVP
RisingDownloader.Agent!8.B23 (CLOUD)
YandexTrojan.Disfa!WMelaFTEEs0
IkarusTrojan-Downloader.MSIL.Agent
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Agent.CUA!tr.dldr
AVGWin32:Malware-gen
Cybereasonmalicious.efb351
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.18d

How to remove Ursu.191958?

Ursu.191958 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment