Malware

Ulise.100251 information

Malware Removal

The Ulise.100251 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.100251 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Deletes its original binary from disk
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Steals private information from local Internet browsers
  • Creates a hidden or system file
  • Creates a copy of itself
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed instant messenger clients
  • Harvests information related to installed mail clients
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

mikeservers.eu

How to determine Ulise.100251?


File Info:

crc32: 846F4AD8
md5: cdca7b4c7e32d34032da5a6482c43879
name: fortunez.exe
sha1: b67c08bdb995941e606afcf4cd0940a432ba1169
sha256: 257cc266ee2a1fc9eda8ef20f8e9e9a5a7cfc464920190d10d8a083cd5862b0a
sha512: 8137ee03044c3eed0ffba7ed092aac8a0c88c7d9c928f688ba4b6cc0e2b21aa18211852055fedfcf7911241b754856e0802ca21217bdb96e7b7a186b975272e0
ssdeep: 12288:pdENteUamlaGjt99cD7g3YTV0o0VbYenH:M2UaOjt9esIZ0VbYenH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Ulise.100251 also known as:

MicroWorld-eScanGen:Variant.Ulise.100251
McAfeeFareit-FRB!CDCA7B4C7E32
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 00560c9d1 )
BitDefenderGen:Variant.Ulise.100251
K7GWTrojan ( 00560c9d1 )
CrowdStrikewin/malicious_confidence_90% (W)
ArcabitTrojan.Graftor.DADF23
Invinceaheuristic
F-ProtW32/Injector.IXE
APEXMalicious
KasperskyHEUR:Trojan-PSW.Win32.Azorult.gen
AlibabaTrojanPSW:Win32/Injector.43feff79
AegisLabTrojan.Win32.Azorult.i!c
Endgamemalicious (high confidence)
EmsisoftGen:Variant.Ulise.100251 (B)
F-SecureTrojan.TR/Injector.amcqv
DrWebTrojan.PWS.Maria.3
MaxSecureTrojan.Malware.300983.susgen
TrendMicroTROJ_GEN.R002C0PBJ20
McAfee-GW-EditionBehavesLike.Win32.Fareit.hh
FortinetW32/Agent.AJFK!tr
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.cdca7b4c7e32d340
SophosMal/Fareit-V
IkarusWin32.Outbreak
CyrenW32/Injector.OYHE-8365
AviraTR/Injector.amcqv
MAXmalware (ai score=88)
Antiy-AVLTrojan[PSW]/Win32.Agent
MicrosoftTrojan:Win32/Lokibot.ART!eml
ZoneAlarmHEUR:Trojan-PSW.Win32.Azorult.gen
AhnLab-V3Win-Trojan/Delphiless.Exp
Acronissuspicious
BitDefenderThetaGen:NN.ZelphiF.34090.IGW@a44st2ni
MalwarebytesTrojan.MalPack.DLF
PandaTrj/Genetic.gen
ZonerTrojan.Win32.69376
ESET-NOD32a variant of Win32/Injector.EKPA
TrendMicro-HouseCallTROJ_GEN.R002C0PBJ20
RisingTrojan.Injector!8.C4 (CLOUD)
eGambitUnsafe.AI_Score_99%
GDataGen:Variant.Ulise.100251
Ad-AwareGen:Variant.Ulise.100251
Cybereasonmalicious.db9959
Paloaltogeneric.ml
Qihoo-360HEUR/QVM05.1.5E61.Malware.Gen

How to remove Ulise.100251?

Ulise.100251 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment