Malware

Ursu.818916 removal tips

Malware Removal

The Ursu.818916 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.818916 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Ursu.818916?


File Info:

crc32: D470E237
md5: f0b3bef2c98cdc63e65289a35253ae13
name: F0B3BEF2C98CDC63E65289A35253AE13.mlw
sha1: 66a6675e719d22356c08a2b4049289eaada52925
sha256: a7d25868e2fcee9d55fe91a87d75df6f7a05d239ba5e71b4ba084fa1f2c52779
sha512: 78cc308a2c2e2dd1754861554639ff35e74ba1ecb8280a3ef068cddeb12b4fe6240ad070d2dba78a94008470a6826769dd9773c89c65798c74e226b135b7cc57
ssdeep: 6144:cSc2hRtdZEetYSJjxg4egJS4D4Oic9ZWzXi3G:cOfZl5Jjxg4egJSOLXW
type: PE32 executable (console) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Ursu.818916 also known as:

LionicTrojan.Win32.Ursu.4!c
ALYacGen:Variant.Ursu.818916
BitDefenderGen:Variant.Ursu.818916
Cybereasonmalicious.2c98cd
APEXMalicious
MicroWorld-eScanGen:Variant.Ursu.818916
Ad-AwareGen:Variant.Ursu.818916
BitDefenderThetaGen:NN.ZelphiF.34058.omGfaiNebUei
McAfee-GW-EditionBehavesLike.Win32.RansomGandCrab.dc
FireEyeGeneric.mg.f0b3bef2c98cdc63
EmsisoftGen:Variant.Ursu.818916 (B)
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Ursu.DC7EE4
GDataGen:Variant.Ursu.818916
AhnLab-V3Malware/Win32.Generic.C3170820
McAfeeRDN/Generic.dx
MAXmalware (ai score=87)
TrendMicro-HouseCallTROJ_GEN.R002H09H421
YandexTrojan.GenAsa!+3s6qjdxK5c
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HwsBChMA

How to remove Ursu.818916?

Ursu.818916 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment