Malware

Ursu.904337 malicious file

Malware Removal

The Ursu.904337 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.904337 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Ursu.904337?


File Info:

crc32: 5AA30503
md5: 836d9abd1f9c21ef78c4f55a4bd3c9e0
name: 836D9ABD1F9C21EF78C4F55A4BD3C9E0.mlw
sha1: 52c5e498dab7b42111b5a0cefc6b77f5ea0b77c1
sha256: 1dd7a58888e637748584cd0e6017ec5c77d4ae67a72df507bdddc42f2744484f
sha512: 0864e7e6f0d192e9a3214c244635bd01b1077443d8dc8ea8832c1a04510fd26398992414fc900a45101ab6ec83e5507bd6e4c961095cf1df37cf560fa8e419fb
ssdeep: 6144:1JT4icnw82f8/JyhHUBykAxXa2GhNWLFzw5bIlSNOdcu9y4aR:1J8iCw8sv0c1a2iNAwWSNOyu9y
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2018
Assembly Version: 1.0.0.0
InternalName: WindowsApplication1.exe
FileVersion: 1.0.0.0
CompanyName: Microsoft
ProductName: WindowsApplication1
ProductVersion: 1.0.0.0
FileDescription: WindowsApplication1
OriginalFilename: WindowsApplication1.exe

Ursu.904337 also known as:

K7AntiVirusTrojan ( 0049370e1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Ursu.904337
CylanceUnsafe
ZillyaTrojan.Generic.Win32.107940
SangforBackdoor.Win32.Bladabindi.8
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0049370e1 )
Cybereasonmalicious.d1f9c2
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.CMQ
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ursu.904337
NANO-AntivirusTrojan.Win32.Zusy.fcfris
MicroWorld-eScanGen:Variant.Ursu.904337
TencentWin32.Trojan.Generic.Dzab
Ad-AwareGen:Variant.Ursu.904337
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34266.uq0@a41fmWf
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric.dte
FireEyeGeneric.mg.836d9abd1f9c21ef
EmsisoftGen:Variant.Ursu.904337 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1127747
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2628EBA
MicrosoftBackdoor:MSIL/Bladabindi.gen!B
GDataGen:Variant.Ursu.904337
AhnLab-V3Trojan/Win32.Agent.C2752552
McAfeeGeneric.dte
MAXmalware (ai score=98)
MalwarebytesMachineLearning/Anomalous.96%
PandaTrj/GdSda.A
IkarusBackdoor.MSIL.Bladabindi
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Injector.CMQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Ursu.904337?

Ursu.904337 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment