Malware

Ursu.788187 removal guide

Malware Removal

The Ursu.788187 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.788187 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ursu.788187?


File Info:

crc32: C8D04076
md5: d0260b65f48887b01779485a0d2764bf
name: another.exe
sha1: bdae2fdb1a568212dcf95e41d52564605b13ea9c
sha256: f438bd5ee9521bbbbb24eb28886097ba39467ff3e61c84e6d7dc5b69b3bcc6f1
sha512: 358b88ca56dc82b7701506f73b3e6a395c02b2474dcc52e7c98b04d0e8374f39ba88adf22621ed840a62e25393b9393b3df5fe28f35ebfc871f54efa907ceaf5
ssdeep: 12288:F6NF5hNvXKJVLhkzFELhTnS+QNZp4a/2poERHNn:oNF5hVX6LhkJELhQ7Oa+O6n
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2007 - 2019
Assembly Version: 0.0.0.0
InternalName: another.exe
FileVersion: 1.1.2.2
CompanyName: o%4M9B$b=8iRj_J65k
Comments: Rc72H+f&iF8W3k=z
ProductName: 7Xot_W5!S4ra
ProductVersion: 1.1.2.2
FileDescription: 7Xo}t_W5!S4ra
OriginalFilename: another.exe

Ursu.788187 also known as:

MicroWorld-eScanGen:Variant.Ursu.788187
FireEyeGeneric.mg.d0260b65f48887b0
Qihoo-360Generic/Trojan.PSW.374
McAfeeArtemis!D0260B65F488
CylanceUnsafe
SangforMalware
BitDefenderGen:Variant.Ursu.788187
K7GWTrojan ( 005626391 )
APEXMalicious
Paloaltogeneric.ml
GDataWin32.Trojan-Stealer.AgentTesla.VQNHSL
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
AlibabaTrojan:MSIL/Kryptik.442dbf5a
AegisLabTrojan.MSIL.Agensla.i!c
AvastWin32:TrojanX-gen [Trj]
Ad-AwareGen:Variant.Ursu.788187
EmsisoftGen:Variant.Ursu.788187 (B)
F-SecureTrojan.TR/Kryptik.osjto
McAfee-GW-EditionBehavesLike.Win32.Backdoor.jh
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
IkarusTrojan.Inject
CyrenW32/MSIL_Kryptik.AHE.gen!Eldorado
AviraTR/Kryptik.osjto
MAXmalware (ai score=89)
Endgamemalicious (high confidence)
ArcabitTrojan.Ursu.DC06DB
ZoneAlarmHEUR:Trojan-PSW.MSIL.Agensla.gen
MicrosoftTrojan:Win32/Occamy.C
BitDefenderThetaGen:NN.ZemsilF.34100.Om0@aWXD!P
ESET-NOD32a variant of MSIL/Kryptik.VAO
RisingTrojan.Kryptik!8.8 (CLOUD)
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_76%
FortinetMSIL/Kryptik.UYU!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Ursu.788187?

Ursu.788187 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment