Malware

About “Ursu.865541” infection

Malware Removal

The Ursu.865541 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.865541 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Ursu.865541?


File Info:

crc32: 9CCF507A
md5: 380ca3355336831de9dcf5118c3a3ac9
name: 380CA3355336831DE9DCF5118C3A3AC9.mlw
sha1: 95b88f7dd478d18b950de828e173dba158ee318c
sha256: e4099cdb56b3fb8359dc4558ecba6445dd3a94ad1c146e27341e7517d1ab9cfa
sha512: 6026cde3b6bdb05483d59e0c18f21bb53b688b4b7ec13807f6da5c2488b5c89e8a80ec510599920f9ec6386c7216a437f7539f100db132e4fe1951c7094dddf8
ssdeep: 12288:hrXqsmFlrrLkiWgjxtfn6dGD+hrqdLQDd9uAZ7R9iWxTmMD:FqsmTf5Wgjxtfn64D+iQT5t
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ursu.865541 also known as:

K7AntiVirusSpyware ( 00552df01 )
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ursu.865541
ALYacGen:Variant.Ursu.865541
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaMalware:Win32/km_247cf.None
K7GWSpyware ( 00552df01 )
Cybereasonmalicious.553368
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Agent.QBO
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.Win32.Fareit.vho
BitDefenderGen:Variant.Ursu.865541
NANO-AntivirusTrojan.Win32.Fareit.ifmzxj
TencentWin32.Trojan-qqpass.Qqrob.Lhxc
Ad-AwareGen:Variant.Ursu.865541
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34266.GqW@au3OHge
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Backdoor.hh
FireEyeGeneric.mg.380ca3355336831d
EmsisoftGen:Variant.Ursu.865541 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Ursu.865541
AhnLab-V3Malware/Win32.Generic.R361052
McAfeeArtemis!380CA3355336
MAXmalware (ai score=81)
VBA32BScope.Trojan.SednitCred
MalwarebytesSpyware.Arkei
PandaTrj/GdSda.A
IkarusTrojan-Spy.Agent
FortinetW32/Agent.PTW!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Ursu.865541?

Ursu.865541 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment