Malware

About “Ursu.224100” infection

Malware Removal

The Ursu.224100 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.224100 virus can do?

  • Uses Windows utilities for basic functionality
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ursu.224100?


File Info:

crc32: 5EC78AA5
md5: f9a4d639df245cb32f3a36a6d7c5526a
name: F9A4D639DF245CB32F3A36A6D7C5526A.mlw
sha1: a2674cfe18b7ed25b95018381057209762d3cd1c
sha256: 75bd17866ec6e33a2f63d7a0058924ccfc37202b1291538b19eef7f9e1da7f81
sha512: 526cf9eb3cde74ba893d6f187a99024bed87930b461e8eec4c83a0c8a49d9e294aa361a316640b7a01cb2ea9588528913acf65cc3651b42cd6337bf3cb67ea76
ssdeep: 768:TTWYpabNDGxuOy2vmJWpzk1SrhKt0UeDu6kyXb84vTVRymdeD:TTl2wEVmmJQzk1+Hjk2/VRVUD
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ursu.224100 also known as:

LionicTrojan.Win32.Generic.4!c
CynetMalicious (score: 100)
ALYacGen:Variant.Ursu.224100
CylanceUnsafe
Cybereasonmalicious.9df245
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Genasom-9863702-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Ursu.224100
NANO-AntivirusTrojan.Win32.GenericKD.esjctu
MicroWorld-eScanGen:Variant.Ursu.224100
TencentMalware.Win32.Gencirc.1149726b
Ad-AwareGen:Variant.Ursu.224100
SophosMal/Generic-S
ComodoMalware@#2stvr9zuw4ljw
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXCG-KR!F9A4D639DF24
FireEyeGeneric.mg.f9a4d639df245cb3
EmsisoftGen:Variant.Ursu.224100 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Ursu.D36B64
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.Ursu.224100
AhnLab-V3Malware/Win32.Generic.C2324102
McAfeeGenericRXCG-KR!F9A4D639DF24
MAXmalware (ai score=100)
VBA32BScope.Trojan.Searcher
MalwarebytesMalware.AI.3248346468
PandaGeneric Malware
RisingTrojan.Generic@ML.98 (RDML:7+IXG0yCX7Jo7usgmXhDeg)
YandexTrojan.GenAsa!0LMOzouHE2w
MaxSecureTrojan.Malware.300983.susgen
FortinetGenericRXCG.KP!tr
AVGWin32:Malware-gen

How to remove Ursu.224100?

Ursu.224100 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment