Malware

Ursu.81055 removal guide

Malware Removal

The Ursu.81055 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.81055 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine Ursu.81055?


File Info:

crc32: C5176053
md5: e45e9273304d3344be29eb217776783a
name: E45E9273304D3344BE29EB217776783A.mlw
sha1: c87358edbe37ac8b2f67a01ba9b0fd3c549213d5
sha256: 3086bbf72c1068e38ecc367b2fe1aa78758b0723a00f04725683569e1fe7b507
sha512: 23426238690e368fe5aa9163127317ab14fbe9857166a2bd83d16a8e33327f08435f42bfa7634ddc4c3f395991b7d4e702beee03e5c91da66a8732b13ab63531
ssdeep: 768:C/7MSnSLEbFIa3tXeHU4gBUzkIvX5IfNGv/rWqsTz6XF4:CvnSLEbFJtNVBUdvhv/riTz6XF4
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2017
Assembly Version: 1.0.0.0
InternalName: tokadaz.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: tokadaz
ProductVersion: 1.0.0.0
FileDescription: tokadaz
OriginalFilename: tokadaz.exe

Ursu.81055 also known as:

K7AntiVirusTrojan ( 004d3df31 )
DrWebTrojan.Encoder.24440
CynetMalicious (score: 99)
ALYacTrojan.Ransom.Unlock92
CylanceUnsafe
ZillyaTrojan.Generic.Win32.408005
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 004d3df31 )
Cybereasonmalicious.3304d3
SymantecDownloader
ESET-NOD32a variant of MSIL/Filecoder.AC
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Ransom.MSIL.Generic
BitDefenderGen:Variant.Ursu.81055
NANO-AntivirusTrojan.Win32.Ransom.exnrtk
ViRobotTrojan.Win32.S.Agent.53248.CPT
MicroWorld-eScanGen:Variant.Ursu.81055
TencentWin32.Trojan.Raas.Auto
Ad-AwareGen:Variant.Ursu.81055
ComodoMalware@#1ie5a5vj81p7c
BitDefenderThetaGen:NN.ZemsilF.34142.dm0@aGr91el
VIPRETrojan.Win32.Generic!BT
FireEyeGen:Variant.Ursu.81055
EmsisoftTrojan.Ransom.Unlock92 (A)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1124375
Antiy-AVLTrojan/Generic.ASMalwS.29B871F
MicrosoftTrojan:Win32/AgentTesla!ml
GDataGen:Variant.Ursu.81055
AhnLab-V3Trojan/Win32.RansomCrypt.R355901
McAfeeArtemis!E45E9273304D
MAXmalware (ai score=99)
MalwarebytesMachineLearning/Anomalous.97%
PandaTrj/GdSda.A
YandexTrojan.Filecoder!xZz2Elpyheg
IkarusTrojan-Ransom.HiddenTear
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.AC!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ursu.81055?

Ursu.81055 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment