Malware

Ursu.801815 information

Malware Removal

The Ursu.801815 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.801815 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Macedonian
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ursu.801815?


File Info:

crc32: 703014CF
md5: 60a7b9fbabd76789dc3953e0ff6b277b
name: install_flash_player_ppapi.exe
sha1: ad5ba9e03bf0fd530350a9a6f2fd8cf7ca5ea5e2
sha256: 9d8633a9164d499af22a33b764916eacb6d574ecfb3899437d309c1825db56bb
sha512: 9513c2a9f895bdd7686ae227b44b2e68e62a4f8ca47a0fcd13e51ad63eca19b6fe063c671274c7db0ff05d6e155f9e815f653458305e62c336cab27e75a64706
ssdeep: 12288:ovfFsy4t7bKHA1zDCQ5WST2HDr+iJfmDYt0Ys:muRtngKHCkU/+isDWps
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ursu.801815 also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanGen:Variant.Ursu.801815
FireEyeGeneric.mg.60a7b9fbabd76789
ALYacGen:Variant.Ursu.801815
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Ursu.801815
K7GWHacktool ( 700007861 )
BitDefenderThetaGen:NN.ZexaF.34106.EqW@aa@q0vpG
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
GDataGen:Variant.Ursu.801815
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazoNsnvLC/XSKx8eth/54A7v)
Ad-AwareGen:Variant.Ursu.801815
SophosMal/RyPack-A
F-SecureHeuristic.HEUR/AGEN.1102737
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Backdoor.gc
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Ursu.801815 (B)
IkarusTrojan.Win32.Tofsee
JiangminBackdoor.Androm.aumt
AviraHEUR/AGEN.1102737
Endgamemalicious (high confidence)
ArcabitTrojan.Ursu.DC3C17
MicrosoftPWS:Win32/Predator.KM!MTB
AhnLab-V3Trojan/Win32.MalPe.R330460
Acronissuspicious
MAXmalware (ai score=89)
MalwarebytesTrojan.MalPack.GS
ESET-NOD32a variant of Win32/Kryptik.HCIA
SentinelOneDFI – Malicious PE
FortinetW32/Kryptik.HCIA!tr
AVGWin32:CoinminerX-gen [Trj]
Cybereasonmalicious.03bf0f
Paloaltogeneric.ml
Qihoo-360HEUR/QVM10.1.6F3F.Malware.Gen

How to remove Ursu.801815?

Ursu.801815 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment