Malware

How to remove “Ursu.78702”?

Malware Removal

The Ursu.78702 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.78702 virus can do?

    How to determine Ursu.78702?

    
    

    File Info:

    crc32: 09FFB323
    md5: 2a3ef084f540a92a5dea210956c3850f
    name: 2A3EF084F540A92A5DEA210956C3850F.mlw
    sha1: a05c399aeaf364f83fe38d8125b520b588b39b42
    sha256: fea0d7956b984f1fd17bbe31d0a5438053c527c42f087a312ffed976e261e3dc
    sha512: c4ad37ce7c6969730002687ef429c3638f7348afdc41b240e1beb3463af7e2beca6d40948208eae93aab8448d4cc846203fbf0af768ab9f657a1e4b7c79b9a46
    ssdeep: 768:Gm/bfBctRlmRVnjg0q7kGa3uBL+VxKSAsaTjy:t/bp1Lqkf+BLuYjy
    type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: Copyright xa9 Microsoft 2018
    Assembly Version: 1.0.0.0
    InternalName: ConsoleApplication5.exe
    FileVersion: 1.0.0.0
    CompanyName: Microsoft
    ProductName: ConsoleApplication5
    ProductVersion: 1.0.0.0
    FileDescription: ConsoleApplication5
    OriginalFilename: ConsoleApplication5.exe

    Ursu.78702 also known as:

    K7AntiVirusTrojan ( 0052376e1 )
    LionicTrojan.MSIL.Generic.4!c
    Elasticmalicious (high confidence)
    DrWebBackDoor.RevetRat.2
    CynetMalicious (score: 99)
    ALYacGen:Variant.Ursu.78702
    CylanceUnsafe
    ZillyaTrojan.Kryptik.Win32.1516614
    SangforSuspicious.Win32.Save.a
    CrowdStrikewin/malicious_confidence_100% (W)
    AlibabaTrojan:MSIL/Kryptik.b92ca4cc
    K7GWTrojan ( 0052376e1 )
    Cybereasonmalicious.4f540a
    CyrenW32/MSIL_Bladabindi.AE.gen!Eldorado
    SymantecML.Attribute.HighConfidence
    ESET-NOD32a variant of MSIL/Kryptik.MNZ
    APEXMalicious
    AvastWin32:Malware-gen
    KasperskyHEUR:Trojan.MSIL.Generic
    BitDefenderGen:Variant.Ursu.78702
    NANO-AntivirusTrojan.Win32.RevetRat.exkdas
    MicroWorld-eScanGen:Variant.Ursu.78702
    TencentMsil.Trojan.Generic.Hqvu
    Ad-AwareGen:Variant.Ursu.78702
    SophosMal/Generic-S
    ComodoMalware@#2w2n1xb3mtdj4
    BitDefenderThetaGen:NN.ZemsilF.34236.hq0@auX@Mcl
    VIPRETrojan.Win32.Generic!BT
    TrendMicroTROJ_GEN.R002C0PJT21
    McAfee-GW-EditionGenericRXFF-FP!2A3EF084F540
    FireEyeGeneric.mg.2a3ef084f540a92a
    EmsisoftGen:Variant.Ursu.78702 (B)
    SentinelOneStatic AI – Malicious PE
    AviraHEUR/AGEN.1105800
    Antiy-AVLTrojan/Generic.ASMalwS.24141FD
    MicrosoftBackdoor:Win32/Bladabindi!ml
    GDataGen:Variant.Ursu.78702
    McAfeeGenericRXFF-FP!2A3EF084F540
    MAXmalware (ai score=66)
    VBA32Backdoor.RevetRat
    PandaTrj/GdSda.A
    TrendMicro-HouseCallTROJ_GEN.R002C0PJT21
    YandexTrojan.Agent!PChUfsuTnWI
    IkarusTrojan.MSIL.Crypt
    FortinetMSIL/GenKryptik.BLMT!tr
    AVGWin32:Malware-gen
    Paloaltogeneric.ml

    How to remove Ursu.78702?

    Ursu.78702 removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment