Malware

What is “Ursu.855076”?

Malware Removal

The Ursu.855076 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.855076 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.855076?


File Info:

crc32: 31FB7290
md5: a5a083c413761643cfd3cedc3d9a14ed
name: A5A083C413761643CFD3CEDC3D9A14ED.mlw
sha1: 83e06a74564480eefd0332643a4293ca793d9bf7
sha256: 2126fc113e15578fa768af6d3d261143d5b7fec800ed362b9fddfe2d226bc41b
sha512: 4333ac018dc345229337693beff170a7198b24ff2236ac7204602f81d686b29e701dc039d502679e0a89450f57c0b3e285bc1ce537f7f2d77dedb8aee0add2c4
ssdeep: 6144:zfCpJiptK/KLUAqq3VAWdHm56SiwybqveHC3Z+QKDL7lKbAlMg/yzNG:zaXinUfAqOm5yOvei3DuBlM
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: msinfo32.exe
FileVersion: 5.1.2600.0 (XPClient.010817-1148)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 5.1.2600.0
FileDescription: System Information
OriginalFilename: msinfo32.exe
Translation: 0x0409 0x04b0

Ursu.855076 also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ursu.855076
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.154658
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaVirus:Win32/Fakefire.4e33a97e
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.413761
CyrenW32/Ipamor.CA.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Ursu.855076
MicroWorld-eScanGen:Variant.Ursu.855076
Ad-AwareGen:Variant.Ursu.855076
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Virut.hm
FireEyeGeneric.mg.a5a083c413761643
EmsisoftGen:Variant.Ursu.855076 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1120878
eGambitUnsafe.AI_Score_97%
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Ursu.DD0C24
GDataWin32.Trojan.PSE.10KC6FF
McAfeeArtemis!A5A083C41376
MAXmalware (ai score=82)
IkarusVirus.Win32.Fakefire
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Ipamor.7AD6!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ursu.855076?

Ursu.855076 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment