Malware

Ursu.911084 removal

Malware Removal

The Ursu.911084 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.911084 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Attempts to disable System Restore

Related domains:

www.cod7-blackops.info

How to determine Ursu.911084?


File Info:

crc32: F2B5A0F3
md5: 771342b0199dfff40a46ba7077fb587f
name: 771342B0199DFFF40A46BA7077FB587F.mlw
sha1: 17039895ac4edd83845625b2532776faf2dcc8bb
sha256: c1f4c17b251c2e4d33a570e9b16a18393cb13e90ee0a54648b04b138650df16d
sha512: 96217f4aec8e0edc821fd32b8a1dd2babcea297fb8e72cc52008cefc7983f4588f330b1d8ff804f3cd1671399fc2c6a69c532f852ff1e4bfce0cc22c3bd2e1fa
ssdeep: 3072:Vv3oRVAshjRIPZCFvivaB2js+qSm4q/aIl+gYmVbtYtbEkt/IB92W40Cm:Vfk7Iha0soP0Fjb+5Ek1In2
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 2.0.5.0
InternalName: nvidia.exe
FileVersion: 2.0.5.0
CompanyName: Nvidia
Comments: Nvidia Graphics
ProductName: Nvidia Graphics
ProductVersion: 2.0.5.0
FileDescription: Nvidia Graphics
OriginalFilename: nvidia.exe

Ursu.911084 also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Blocker.4!c
ALYacGen:Variant.Ursu.911084
CylanceUnsafe
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.0199df
SymantecTrojan.Gen
ESET-NOD32a variant of MSIL/Agent.BQB
AvastWin32:Agent-ANPQ [Trj]
KasperskyTrojan-Ransom.Win32.Blocker.ikuw
BitDefenderGen:Variant.Ursu.911084
NANO-AntivirusTrojan.Win32.Blocker.fcpnsb
MicroWorld-eScanGen:Variant.Ursu.911084
TencentWin32.Trojan.Blocker.Afrf
Ad-AwareGen:Variant.Ursu.911084
SophosMal/Generic-S
ComodoMalware@#1c1og3shuwq2n
BitDefenderThetaGen:NN.ZemsilF.34050.xm0@a4Miyze
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Ursu.911084
EmsisoftGen:Variant.Ursu.911084 (B)
SentinelOneStatic AI – Suspicious PE
Antiy-AVLTrojan/Generic.ASMalwS.1951FF5
MicrosoftPUA:Win32/Presenoker
ArcabitTrojan.Ursu.DDE6EC
GDataGen:Variant.Ursu.911084
McAfeeArtemis!771342B0199D
YandexTrojan.Blocker!j5KtJXSQC1Y
FortinetW32/Blocker.IKUW!tr
AVGWin32:Agent-ANPQ [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HgIASPkA

How to remove Ursu.911084?

Ursu.911084 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment