Malware

Ursu.765178 information

Malware Removal

The Ursu.765178 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.765178 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.765178?


File Info:

crc32: B0956FCB
md5: 267c85c95c1746f8fc3e3cfcd39c8462
name: 267C85C95C1746F8FC3E3CFCD39C8462.mlw
sha1: e147a3db4c2346e0b95f8365b44adc3ba6c61ef9
sha256: dd108f150ba04792101632bc1b9adfbef449dc221378b856a270c56fad703a09
sha512: 09156ae3eac49b25fec3c39ef573a39ffcdd0ad1b03620317e1dc532e9de5ce67c3c316e40b9b0de03be30b56f5abe8e01aa4de41597dfe9e89831318368734c
ssdeep: 192:zbhUuffOM0AtoZiPVuirQ5aNbr2g1Mhsv8SvhQsMw:5fD0AtqiPQI4aNb6po8Svuu
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 1.0.0.0
InternalName: ruby.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: diamond
ProductVersion: 1.0.0.0
FileDescription: diamond
OriginalFilename: ruby.exe

Ursu.765178 also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Ursu.765178
CylanceUnsafe
K7GWTrojan ( 700000121 )
Cybereasonmalicious.95c174
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Filecoder.UH
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
BitDefenderGen:Variant.Ursu.765178
MicroWorld-eScanGen:Variant.Ursu.765178
Ad-AwareGen:Variant.Ursu.765178
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34050.am1@aayhv3k
TrendMicroTrojan.MSIL.TEIKA.SMTH
FireEyeGeneric.mg.267c85c95c1746f8
EmsisoftGen:Variant.Ursu.765178 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1131332
GDataGen:Variant.Ursu.765178
MAXmalware (ai score=89)
TrendMicro-HouseCallTrojan.MSIL.TEIKA.SMTH
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:RansomX-gen [Ransom]
Qihoo-360HEUR/QVM03.0.DE7F.Malware.Gen

How to remove Ursu.765178?

Ursu.765178 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment