Malware

Ursu.932320 removal

Malware Removal

The Ursu.932320 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.932320 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine Ursu.932320?


File Info:

name: B8BE51655487AE938FDE.mlw
path: /opt/CAPEv2/storage/binaries/f2849376cb1d367e79e77527be2e8a292b6593923c77d2028424703f6ee447c8
crc32: 18A73CC2
md5: b8be51655487ae938fded4bbf5df8966
sha1: 48955088b0824b981436b5413da5790c1f922a52
sha256: f2849376cb1d367e79e77527be2e8a292b6593923c77d2028424703f6ee447c8
sha512: c787d3ede79871471672435593aa41d58fdc0f1bb34ca76f667577285d0c6566b5997aa7e75b0dfef5aba8190c0dabeb1acf0c1073c056204fa2edbafd035594
ssdeep: 768:fL8hu6aw1x7jv6x7bdqWc2mWgsUrsR+gRytXhxEzNnjD1dPIq0FLzLF4PQaooV0M:f4hsw1x7j2bdw2m9sUrsR+gRytrEVjBj
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T19A137C857FAC9642E56E43F960A24A414732E1162A73DBF99CCC88F68FF379502017A7
sha3_384: 171091bc89f023fb359dda398b641dd5ff41358ab62e7b55d346ec86e60ed38c80c7ecf669b6f412885dab6994036c6b
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2077-11-04 20:23:13

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Skate 3 Park Tool RPCS3
FileVersion: 1.0.0.0
InternalName: Skate 3 Park Tool RPCS3.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Skate 3 Park Tool RPCS3.exe
ProductName: Skate 3 Park Tool RPCS3
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Ursu.932320 also known as:

LionicRiskware.Win32.Ursu.1!c
MicroWorld-eScanGen:Variant.Ursu.932320
FireEyeGen:Variant.Ursu.932320
ALYacGen:Variant.Ursu.932320
Cybereasonmalicious.55487a
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Riskware.GameHack.CS
APEXMalicious
BitDefenderGen:Variant.Ursu.932320
AvastFileRepMalware
TencentWin32.Trojan.Ursu.Phqk
Ad-AwareGen:Variant.Ursu.932320
EmsisoftGen:Variant.Ursu.932320 (B)
McAfee-GW-EditionArtemis!Trojan
SophosGeneric PUA EI (PUA)
GDataGen:Variant.Ursu.932320
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!B8BE51655487
MAXmalware (ai score=83)
TrendMicro-HouseCallTROJ_GEN.R002H09L321
SentinelOneStatic AI – Suspicious PE
FortinetRiskware/GameHack
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (W)

How to remove Ursu.932320?

Ursu.932320 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment