Malware

Ursu.750099 (B) removal

Malware Removal

The Ursu.750099 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.750099 (B) virus can do?

  • A process attempted to delay the analysis task.
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Attempts to create or modify a Browser Helper Object
  • Anomalous binary characteristics

How to determine Ursu.750099 (B)?


File Info:

crc32: 9BE5EB82
md5: 5e5203a98768ebde73d86e638e05f1f8
name: 5E5203A98768EBDE73D86E638E05F1F8.mlw
sha1: 34053c49fa9a0818b6c9c06c684bb6ff85ad8eef
sha256: e2c69559fee7de33849347dc58fb02e6a5bc1543eb03da4a32c819e56d67da67
sha512: 76fc2c0e7946dfca7ab3ef37f49ae50331bdec69eafe9c2bf06e090bd53683ebb1d00b5f4737f93dd9887403f7f9ceda751d40d5240e7fc6c3030454470f5833
ssdeep: 12288:p65Co/LAj8rQwx9e/Hr7CAYNlaNr+skTsQtuHWZ7Fz3qqibWw:No/LAwrQwiHCZjaNr+skTBtHhzzibWw
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2014
FileVersion: 1, 6, 4, 1211
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Ursu.750099 (B) also known as:

BkavW32.FamVT.HijacNHm.Trojan
K7AntiVirusTrojan ( 004cd62d1 )
LionicTrojan.Win32.Hijacker.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.49586
CynetMalicious (score: 99)
CAT-QuickHealTrojan.Hijacker.19537
ALYacGen:Variant.Ursu.750099
CylanceUnsafe
ZillyaTrojan.Hijacker.Win32.511
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004cd62d1 )
Cybereasonmalicious.98768e
BaiduWin32.Trojan.Generic.s
CyrenW32/Trojan.TFJY-6568
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
ZonerTrojan.Win32.77510
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Trojan.Hijacker-91
KasperskyTrojan.Win32.Hijacker.m
BitDefenderGen:Variant.Ursu.750099
NANO-AntivirusTrojan.Win32.Hijacker.dxwvrl
MicroWorld-eScanGen:Variant.Ursu.750099
TencentMalware.Win32.Gencirc.10b0a483
Ad-AwareGen:Variant.Ursu.750099
ComodoTrojWare.Win32.Hijacker.MA@5j3oci
BitDefenderThetaGen:NN.ZexaF.34170.Nu0@aG6lUBdj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.5e5203a98768ebde
EmsisoftGen:Variant.Ursu.750099 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Hijacker.b
AviraHEUR/AGEN.1107709
eGambitUnsafe.AI_Score_92%
Antiy-AVLTrojan/Generic.ASMalwS.14C0954
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Ursu.750099
TACHYONTrojan/W32.Hijacker.644608.FH
AhnLab-V3Malware/Win32.Generic.C1443862
McAfeeGenericR-HCO!5E5203A98768
MAXmalware (ai score=83)
VBA32BScope.Trojan.Tiggre
MalwarebytesMalware.AI.3162888155
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.89 (RDML:42zJvM/9ONnZdnU6vcY4tQ)
YandexTrojan.Hijacker!+9NHwEzKDNE
IkarusTrojan.Win32.Hijacker
FortinetW32/Hijacker.C!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Ursu.750099 (B)?

Ursu.750099 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment