Malware

Ursu.199920 malicious file

Malware Removal

The Ursu.199920 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.199920 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.199920?


File Info:

crc32: 39F08F5B
md5: 58fab3abe811e8a023d3ba11beab2f03
name: 58FAB3ABE811E8A023D3BA11BEAB2F03.mlw
sha1: e07b9dffd407303ed7e9d2a51a26126c316bc74d
sha256: 3288b23b41be1a4f47fdfbc80441287aebc11e00e94bdc60810a09f4f52979f0
sha512: 99518d312bffd3946fbd88955e15aaa821b35abc2145292c49cb9015259dce38ae353194ae0d621acd02ab07c3cbbcd8f2fc8280035433edcec56c281c9f0a3f
ssdeep: 384:7VBqT5sBrTQx7BacprX+ozB5ZBsPO+vmr3bC3:7u5s2JBacprOkXZiIi
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.4.2.5841
InternalName: two.exe
FileVersion: 1.4.2.5841
ProductVersion: 1.4.2.5841
FileDescription:
OriginalFilename: two.exe

Ursu.199920 also known as:

K7AntiVirusSpyware ( 00504f9b1 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop7.16882
CynetMalicious (score: 99)
ALYacGen:Variant.Ursu.199920
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.37305
AlibabaRansom:Win32/Blocker.f28da8fc
K7GWSpyware ( 00504f9b1 )
Cybereasonmalicious.be811e
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.AWA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.jxfx
BitDefenderGen:Variant.Ursu.199920
NANO-AntivirusTrojan.Win32.Agent.eloikb
MicroWorld-eScanGen:Variant.Ursu.199920
TencentWin32.Trojan.Blocker.Szly
Ad-AwareGen:Variant.Ursu.199920
SophosMal/Generic-S
ComodoMalware@#e7ahk835knor
BitDefenderThetaGen:NN.ZemsilF.34126.bm0@aiH!eEn
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.58fab3abe811e8a0
EmsisoftGen:Variant.Ursu.199920 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Spy.Gen
Antiy-AVLTrojan/Generic.ASMalwS.201F64E
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Dynamer!ac
GDataGen:Variant.Ursu.199920
McAfeeArtemis!58FAB3ABE811
MAXmalware (ai score=100)
VBA32TrojanRansom.Blocker
PandaTrj/GdSda.A
YandexTrojan.Blocker!5gaOY4Q3NdY
IkarusTrojan.MSIL.Spy
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.AP.4F1E74!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ursu.199920?

Ursu.199920 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment