Malware

Ursu.98463 malicious file

Malware Removal

The Ursu.98463 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ursu.98463 virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ursu.98463?


File Info:

crc32: B2E03008
md5: 20a43f57dc505ffac0da8b49d91fd322
name: 20A43F57DC505FFAC0DA8B49D91FD322.mlw
sha1: ee9132b380e1307a283dcca9a7e54fcf333aa4d6
sha256: ae83f208925ec791bd10f37e0cd1bfc98473ea586c4814288a243c7d579c2e55
sha512: c10d6dfec99f6b91235d7f619e12ef56d432faa36e53da9d4469dad87ad5206628992d2b7258b48d0e1dfa5a9d011cbd2f421bdd2d48f9c72ef11e45addea625
ssdeep: 3072:/xEJpxEqxE2wzTvvfQ+2U4gzEy2fAC4wrw9xEAxEKxEJ:pEJ7EAE2l3Dp6EmEgEJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Ordbl
FileVersion: 4.02.0002
CompanyName: Dirsk
Comments: Dirsk
ProductName: Dirsk
ProductVersion: 4.02.0002
FileDescription: Dirsk
OriginalFilename: Ordbl.exe

Ursu.98463 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ursu.98463
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Injector.2fe5edc2
Cybereasonmalicious.7dc505
CyrenW32/VBKrypt.AYS.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Injector.EPYA
APEXMalicious
AvastFileRepMalware
KasperskyUDS:Backdoor.Win32.Androm
BitDefenderGen:Variant.Ursu.98463
MicroWorld-eScanGen:Variant.Ursu.98463
Ad-AwareGen:Variant.Ursu.98463
BitDefenderThetaGen:NN.ZevbaF.34058.jm0@aeWnXTji
McAfee-GW-EditionBehavesLike.Win32.Trojan.ch
FireEyeGeneric.mg.20a43f57dc505ffa
EmsisoftGen:Variant.Ursu.98463 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Ursu.D1809F
GDataGen:Variant.Ursu.98463
McAfeeArtemis!20A43F57DC50
MAXmalware (ai score=87)
MalwarebytesTrojan.MalPack.VB
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06FC0WHD21
IkarusWin32.Outbreak
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FIVS!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360HEUR/QVM03.0.3D2B.Malware.Gen

How to remove Ursu.98463?

Ursu.98463 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment