Malware

How to remove “Ursu.847078”?

Malware Removal

The Ursu.847078 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.847078 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Ursu.847078?


File Info:

crc32: B1A6F327
md5: f857575c9cd5c2bb3a0b8f30f4b3ad59
name: game.exe
sha1: cb012591c2c3a17e4635e80b1e1eb652f17e3608
sha256: ae007486117352fe4d7f57961f202df4914aeaa6632babaef3e15bf89988ce19
sha512: bef46db54c7364586497eb61789a391f548d3be1c9db368258836c2151bb301bc32b701aaa5b04577b3ffefdde038f8e0f1b2795ba4de76fd9c1f5cfd70e4d9f
ssdeep: 98304:xwL40vKNuBlawbeeg/BgWaf2VXu4wCdOFTCpspZd9F8JxVql0DWXtOwPf8O:xwL40vFlaKeeg/BgWaf2VXu4jsGspZd
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: x7248x6743x6240x6709 (C) 1995-2004 x91d1x5c71x8f6fx4ef6x80a1x4efdx6709x9650x516cx53f8
InternalName: Game
FileVersion: 3, 0, 0, 6
CompanyName: x91d1x5c71x8f6fx4ef6x80a1x4efdx6709x9650x516cx53f8
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: SwordOnline
OLESelfRegister:
SpecialBuild:
ProductVersion: 3.00.00.2003
FileDescription: JxOnline Client
OriginalFilename: Game.exe
Translation: 0x0804 0x04b0

Ursu.847078 also known as:

MicroWorld-eScanGen:Variant.Ursu.847078
CAT-QuickHealTrojan.MauvaiseRI.S5254690
McAfeeGenericRXGB-QS!F857575C9CD5
CylanceUnsafe
K7AntiVirusTrojan ( 005203381 )
BitDefenderGen:Variant.Ursu.847078
K7GWTrojan ( 005203381 )
CrowdStrikewin/malicious_confidence_100% (W)
TrendMicroTROJ_GEN.R002C0PEN20
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
GDataGen:Variant.Ursu.847078
KasperskyHEUR:Trojan.Win32.Quasar.gen
AlibabaTrojan:Win32/Quasar.1187b2be
AegisLabTrojan.Win32.Quasar.4!c
Ad-AwareGen:Variant.Ursu.847078
EmsisoftGen:Variant.Ursu.847078 (B)
F-SecureTrojan.TR/Redcap.azmui
McAfee-GW-EditionGenericRXGB-QS!F857575C9CD5
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.f857575c9cd5c2bb
SophosMal/Generic-S
JiangminTrojan.Quasar.af
WebrootW32.Malware.Gen
AviraTR/Redcap.azmui
MAXmalware (ai score=88)
Antiy-AVLTrojan/Win32.Quasar
Endgamemalicious (high confidence)
ArcabitTrojan.Ursu.DCECE6
ZoneAlarmHEUR:Trojan.Win32.Quasar.gen
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
ALYacGen:Variant.Ursu.847078
VBA32Malware-Cryptor.Win32.General.4
MalwarebytesBackdoor.Quasar.Enigma
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0PEN20
RisingTrojan.Quasar!8.F866 (CLOUD)
SentinelOneDFI – Malicious PE
MaxSecureTrojan.Malware.73867963.susgen
FortinetW32/Quasar.QS!tr
BitDefenderThetaGen:NN.ZexaF.34122.@F1@ae5bEUlj
AVGWin32:Malware-gen
Cybereasonmalicious.1c2c3a
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.4c5

How to remove Ursu.847078?

Ursu.847078 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment