Malware

Ursu.825165 removal guide

Malware Removal

The Ursu.825165 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.825165 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Ursu.825165?


File Info:

crc32: 7DA4E6D0
md5: 148f3d297d6408129a34c304ff657a3d
name: 148F3D297D6408129A34C304FF657A3D.mlw
sha1: a16b0428e1eb5148cec663d822bec246e18e77f5
sha256: 46d13a3d0e1e8e2f86e587cdd040ef35123fc54d49ee4daaceacfde34d572046
sha512: a36acef8bcbfac94a3d73abf4cc58d1fcfad86cfb6a9c25930f33097f29d335c3ffd6dd20da763ad83849dfc3607de326214e6a5b1205c9d7bfa96f53a43a2bc
ssdeep: 12288:KJmWMzH+hB/pzxJi3X3+b6umJBDARbeqTJguh+jOdF0NrWwH9jKSO:qLpXk+b6umJBDAJeqtggIrX0V
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: (C) 2021 AnyDesk Software GmbH
Assembly Version: 6.3.2.0
InternalName: putty.exe
FileVersion: 6.3.2.0
CompanyName: AnyDesk Software GmbH
LegalTrademarks:
Comments: AnyDesk
ProductName: AnyDesk
ProductVersion: 6.3.2.0
FileDescription: AnyDesk
OriginalFilename: putty.exe

Ursu.825165 also known as:

Elasticmalicious (high confidence)
ALYacGen:Variant.Ursu.825165
CylanceUnsafe
BitDefenderGen:Variant.Ursu.825165
Cybereasonmalicious.97d640
CyrenW32/MSIL_Kryptik.UR.gen!Eldorado
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
MicroWorld-eScanGen:Variant.Ursu.825165
Ad-AwareGen:Variant.Ursu.825165
BitDefenderThetaGen:NN.ZemsilF.34126.8m0@aWFXEWi
FireEyeGeneric.mg.148f3d297d640812
EmsisoftGen:Variant.Ursu.825165 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ArcabitTrojan.Ursu.DC974D
GDataGen:Variant.Ursu.825165
MAXmalware (ai score=87)
MalwarebytesTrojan.MalPack
MaxSecureTrojan.Malware.300983.susgen

How to remove Ursu.825165?

Ursu.825165 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment