Malware

Ursu.844420 removal guide

Malware Removal

The Ursu.844420 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.844420 virus can do?

  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Anomalous binary characteristics

How to determine Ursu.844420?


File Info:

crc32: E23D183E
md5: f2fbaec608362cfa970028561465b460
name: F2FBAEC608362CFA970028561465B460.mlw
sha1: 70826d1fc3a289eef5fcbf276ee1c78ab13a3119
sha256: cf646f76f6453313870523b138bd414f3568a91585c4e40b18a3785ae9a1e022
sha512: 85023a71de2c651a05a627c25cceec86bdbbb4f4b292e5c6a8e72ecf0274426ced8f9022f1c155b554e8d9fc7b7f1a63e937251853c23d8212cb228183fc3fa8
ssdeep: 12288:pUwF3DY4/xQCXmUGr8phPHdwnzDwCKSDC3vgQF7qCU5VRwRg4o7hjed4461iBIL:pTF3s4/xQC2UG4plHUws23oQFMzj2mb
type: PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: putty.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: putty.exe

Ursu.844420 also known as:

Elasticmalicious (high confidence)
ALYacGen:Variant.Ursu.844420
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderGen:Variant.Ursu.844420
Cybereasonmalicious.608362
ESET-NOD32a variant of MSIL/Packed.VMProtect.C suspicious
APEXMalicious
CynetMalicious (score: 100)
MicroWorld-eScanGen:Variant.Ursu.844420
Ad-AwareGen:Variant.Ursu.844420
SophosML/PE-A
FireEyeGeneric.mg.f2fbaec608362cfa
EmsisoftGen:Variant.Ursu.844420 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Ursu.DCE284
GDataGen:Variant.Ursu.844420
MAXmalware (ai score=88)
MaxSecureTrojan.Malware.300983.susgen

How to remove Ursu.844420?

Ursu.844420 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment