Malware

Should I remove “Ursu.263137”?

Malware Removal

The Ursu.263137 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.263137 virus can do?

  • Reads data out of its own binary image
  • Anomalous binary characteristics

How to determine Ursu.263137?


File Info:

crc32: ADB49AA3
md5: 765753663a0a3c19770646db736cbec2
name: 765753663A0A3C19770646DB736CBEC2.mlw
sha1: c2fdf1e669ead073c712bc42d3004b2dabcf5279
sha256: 519f03e0433aa071d95aacad28c0a49fad5f7a0c5cf875e4c0df835886aae729
sha512: 20f99fb52808ac3b7b264ac6458ca29a7e743c895f0b9997f1f2c7e09319183c6524d308bd0550a4e3375bba58637206882f3740553bb709510e35c15d94fe35
ssdeep: 12288:qfulyq4g6QhmmLYq/NrB+WdupTrdprjGMMQRp2gF5:WuJaQYmLYq/Nd+WdiTrdprjP2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

internalname: Coruscate Squashy
fileversion: 14.67.58.794
companyname: Toadstools Arrival
comments: Saltbox
productname: Portents Hayloft
productversion: 70.81.53.918
filedescription: Endemics Beaucoup
originalfilename: Sprights
Translation: 0x0685 0x0735

Ursu.263137 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005392931 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24344
CynetMalicious (score: 90)
McAfeeGenericRXGI-YK!765753663A0A
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.133882
SangforRansom.Win32.Blocker.ldnq
AlibabaRansom:Win32/Blocker.f53cb69d
K7GWTrojan ( 005392931 )
Cybereasonmalicious.63a0a3
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CGRX
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.ldnq
BitDefenderGen:Variant.Ursu.263137
NANO-AntivirusTrojan.Win32.Blocker.fhwulj
MicroWorld-eScanGen:Variant.Ursu.263137
TencentMalware.Win32.Gencirc.114d23a3
Ad-AwareGen:Variant.Ursu.263137
SophosMal/Generic-S
ComodoMalware@#1rf2l4da0ektk
BitDefenderThetaGen:NN.ZexaF.34608.YuW@a4S!41di
McAfee-GW-EditionBehavesLike.Win32.Worm.ch
FireEyeGeneric.mg.765753663a0a3c19
EmsisoftGen:Variant.Ursu.263137 (B)
AviraHEUR/AGEN.1112614
MicrosoftTrojan:Win32/Occamy.B
AegisLabTrojan.Multi.Generic.4!c
GDataGen:Variant.Ursu.263137
AhnLab-V3Malware/Win32.Generic.C2641791
VBA32BScope.TrojanRansom.Blocker
MAXmalware (ai score=100)
MalwarebytesMalware.Heuristic.1008
PandaTrj/GdSda.A
RisingRansom.Blocker!8.12A (CLOUD)
IkarusTrojan.Win32.Krypt
FortinetW32/Kryptik.GJIS!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.973

How to remove Ursu.263137?

Ursu.263137 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment