Malware

Ursu.680166 malicious file

Malware Removal

The Ursu.680166 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.680166 virus can do?

  • Anomalous binary characteristics

How to determine Ursu.680166?


File Info:

crc32: D002FBFB
md5: 524549623cf15b535414843e4860323a
name: 524549623CF15B535414843E4860323A.mlw
sha1: 7a1b2308976c87fa107b6a6b7c4f3de29983a6de
sha256: 2d4362d168e6b11b65fa039bdba906e9650a3eec29fe752f03c9330cd79dafcb
sha512: bab2b91cae97e0e1b380dfa74b00facd06f458b91a0c749748dae4031d3cd83f507746d2c81ddeb0de442c85fed66933c44d8b4953d688215937603e7b3e0942
ssdeep: 96:+yP2BRjErL5WU0+oyEv1Pjtu6ifPG0RKzNt:vP2+t0ryEljtG7y
type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: Malicious app.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Malicious app
ProductVersion: 1.0.0.0
FileDescription: Malicious app
OriginalFilename: Malicious app.exe

Ursu.680166 also known as:

K7AntiVirusTrojan ( 0055391d1 )
DrWebTrojan.ClipBankerNET.12
ALYacGen:Variant.Ursu.680166
CylanceUnsafe
ZillyaTrojan.ClipBanker.Win32.2930
SangforTrojan.Win32.Occamy.C2D
AlibabaTrojan:MSIL/ClipBanker.909ab222
K7GWTrojan ( 0055391d1 )
Cybereasonmalicious.23cf15
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/ClipBanker.KF
AvastWin32:Trojan-gen
BitDefenderGen:Variant.Ursu.680166
MicroWorld-eScanGen:Variant.Ursu.680166
Ad-AwareGen:Variant.Ursu.680166
SophosMal/Generic-S
ComodoMalware@#fzug8dshlcxh
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Ursu.680166
EmsisoftGen:Variant.Ursu.680166 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Occamy.C2D
ArcabitTrojan.Ursu.DA60E6
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Ursu.680166
McAfeeArtemis!524549623CF1
VBA32TScope.Trojan.MSIL
RisingTrojan.ClipBanker!8.5FB (CLOUD)
IkarusTrojan.MSIL.ClipBanker
MaxSecureTrojan.Malware.1380222.susgen
FortinetMSIL/ClipBanker.LA!tr
AVGWin32:Trojan-gen
Qihoo-360Win32/Trojan.Generic.HgIASOcA

How to remove Ursu.680166?

Ursu.680166 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment