Malware

Ursu.784964 information

Malware Removal

The Ursu.784964 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.784964 virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Korean
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Ursu.784964?


File Info:

crc32: 0083F27D
md5: 23439a7a5a81bceed95c1b321eb518c5
name: hMenu.exe
sha1: 9966ef37d0a5ca8df77d2a46232b0a18e24b34df
sha256: 1bec7e9eb822297f8bdd07a0ae458ed4c8e32f968068cb41375485736da1d35b
sha512: 7c8b1860e70e18c35cd645f8bd461e52b84744b65dadc207ca43ae5cc995450eb1a5a4d485490adbcb8959bcf6c48786715259ee7174b9217158f0abcfff5b7d
ssdeep: 12288:+Re3VwVpVIVif9/2V36Vm4Q3uV3W0TDNh9OcZrV:V3WnyBx6RQeg0TDNyu
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0412 0x04b0
LegalCopyright: ClikSoft Co.,Ltd
InternalName: hMenu
FileVersion: 1.00
CompanyName: xd074xb9adxc18cxd504xd2b8(xc8fc)
LegalTrademarks: Newxd074xb9ad
ProductName: Newxd074xb9ad
ProductVersion: 1.00
FileDescription: xd55cxbc29xba54xc778xba54xb274
OriginalFilename: hMenu.exe

Ursu.784964 also known as:

MicroWorld-eScanGen:Variant.Ursu.784964
FireEyeGen:Variant.Ursu.784964
McAfeeArtemis!23439A7A5A81
BitDefenderGen:Variant.Ursu.784964
K7GWNetWorm ( 700000151 )
K7AntiVirusNetWorm ( 700000151 )
APEXMalicious
ClamAVWin.Worm.Generic-6842389-0
GDataGen:Variant.Ursu.784964
McAfee-GW-EditionBehavesLike.Win32.BadFile.fm
EmsisoftGen:Variant.Ursu.784964 (B)
IkarusVirus.Win32.Virut
MAXmalware (ai score=86)
MicrosoftTrojan:Win32/Wacatac.C!ml
ArcabitTrojan.Ursu.DBFA44
VBA32BScope.Trojan.Bitrep
Ad-AwareGen:Variant.Ursu.784964
AVGFileRepMalware

How to remove Ursu.784964?

Ursu.784964 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment