Malware

How to remove “Ursu.923717”?

Malware Removal

The Ursu.923717 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.923717 virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.923717?


File Info:

crc32: 59D0013A
md5: f9310032ec6d393dd91ac602f86a79ae
name: F9310032EC6D393DD91AC602F86A79AE.mlw
sha1: 96d701b7eea30ad4b008ca4a34424e14349d1762
sha256: 1b86687d2a3d96d47efd7774bec67b19b2917b4065f7582ea2029413819dae20
sha512: 1de9588469a6e7ff48e337debdd1ae94d1ca5cbd6d3e532b3e6d5a8c42879918e41198beaeff52371158d6b9267c0e1af3789224a8013df4d5b0a973f4903eef
ssdeep: 24576:+2v/MMpyaewsAjZMbo7JXT3g2v/MMpyaewsAju:+cvnljZsCRT3gcvnlju
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) Microsoft Corp. 1981-2000
InternalName: copymar
FileVersion: 6.10.0016.1624
CompanyName: Microsoft Corporation
Built by: msnbld
ProductName: Microsoft(R) MSN (R) Communications System
ProductVersion: 6.10.0016.1624
FileDescription: copymar
OriginalFilename: copymar.exe
Translation: 0x0409 0x04b0

Ursu.923717 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.547
CynetMalicious (score: 100)
ALYacGen:Variant.Ursu.923717
CylanceUnsafe
SangforWin.Worm.Pajetbin-6726648-0
CrowdStrikewin/malicious_confidence_80% (D)
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.2ec6d3
BaiduWin32.Trojan.VB.t
CyrenW32/Vigua.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:VB-FBX
ClamAVWin.Ransomware.WannaCry-9856297-0
KasperskyUDS:Trojan.Win32.Scar.oinw
BitDefenderGen:Variant.Ursu.923717
MicroWorld-eScanGen:Variant.Ursu.923717
Ad-AwareGen:Variant.Ursu.923717
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34110.rn3@aa6FvTpi
McAfee-GW-EditionBehavesLike.Win32.Virut.th
FireEyeGeneric.mg.f9310032ec6d393d
EmsisoftGen:Variant.Ursu.923717 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1141290
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Woreflint.A!cl
GDataWin32.Trojan.PSE.136NMWS
McAfeeTrojan-FQDC!F9310032EC6D
MAXmalware (ai score=87)
MalwarebytesVB.Virus.FileInfector.DDS
IkarusVirus.Win32.VB
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Trojan.FQDC!tr
AVGWin32:VB-FBX

How to remove Ursu.923717?

Ursu.923717 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment