Trojan

Trojan.ULPM removal tips

Malware Removal

The Trojan.ULPM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.ULPM virus can do?

  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Trojan.ULPM?


File Info:

name: EE12F9D5BA017679665F.mlw
path: /opt/CAPEv2/storage/binaries/b9157e6eb6650e4b3171a572a0f64d31bfe3b55fd08711c681e62efd31f4d025
crc32: CDC178AB
md5: ee12f9d5ba017679665f5a4fd420deb4
sha1: bd522cf065b1a84b39296b57f92db6944f8be04d
sha256: b9157e6eb6650e4b3171a572a0f64d31bfe3b55fd08711c681e62efd31f4d025
sha512: 52c06cbab921467f7fd635559903c2e39f62af41bc89adb94b1bc04dab41c2cd2dbd69f7e827efa22d4a3adc857bc9016bee804d0d3ece83f29de6e67c843a03
ssdeep: 49152:60nHqZ8N9rMI1GD986yo9cToz4w/hSKUucpo/VwqkCxuzlX:60nKZ8jrIyscToz4YYKUu/VTuz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16BE5C003B7D08871E9F9273059B653764F3AB8065635C79B6754FC9A2C33600FA2A3DA
sha3_384: e0ff838452ea9d9d915d41e67a2b1d72c3760a7696d41268f033b5b5a2dbb2d343fe84fb1b0f7de0b2c29a2b0bb9ca82
ep_bytes: 60be00007f008dbe0010c1ff5783cdff
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName:
LegalCopyright:
LegalTrademarks:
OriginalFilename:
ProductName:
ProductVersion: 1.0.0.0
Translation: 0x0409 0x04e4

Trojan.ULPM also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Zusy.1!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKD.68219076
FireEyeGeneric.mg.ee12f9d5ba017679
ALYacTrojan.GenericKD.68219076
Cylanceunsafe
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/grayware_confidence_100% (D)
CyrenW32/InstallMonster.BT.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKD.68219076
AvastWin32:Malware-gen
EmsisoftTrojan.GenericKD.68219076 (B)
VIPRETrojan.GenericKD.68219076
McAfee-GW-EditionBehavesLike.Win32.Suspicious.vh
Trapminemalicious.moderate.ml.score
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.68219076
ArcabitTrojan.Generic.D410F0C4
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeeArtemis!EE12F9D5BA01
MAXmalware (ai score=81)
VBA32Trojan.ULPM
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H0CGK23
IkarusTrojan-Dropper.Agent
MaxSecureTrojan.Malware.209665257.susgen
FortinetW32/ULPM.16C0!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan.ULPM?

Trojan.ULPM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment