Malware

Ulise.101354 information

Malware Removal

The Ulise.101354 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ulise.101354 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Ulise.101354?


File Info:

crc32: E5345F8B
md5: 229e1d55f553c1f531e4d2505195ed03
name: 002.exe
sha1: fc1ff7d25dd036586fb190f96e074f766eb6fc72
sha256: 0348eb5544c9aafd59b1d43f92f0fcc027ff8171838ee355f9faa850f998210d
sha512: 613f58ed897cfbdc6ca4de3e8ed868da0b61dc1c9772e3066c7221589eaee957874f4ea98698de8ffa4c4fb9261799f60d7bb419e806aed202b7b452d7299130
ssdeep: 49152:LZDPGT8BBEhY4T4Ax79IOWZhcNhrBPnCpRioI0QN/1Sw+prXD7UpIqm:LZDPM8Bn4hx1WANhrBcRTI0S/owC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: CopyRight (C) 2019
InternalName: ByteDownload
FileVersion: 1, 0, 0, 2
CompanyName: 003
ProductName: ByteDownload Application
ProductVersion: 1, 0, 0, 2
FileDescription: ByteDownload Microsoft x57fax7840x7c7bx5e94x7528x7a0bx5e8f
OriginalFilename: 003.EXE
Translation: 0x0804 0x04b0

Ulise.101354 also known as:

BkavHW32.Packed.
MicroWorld-eScanGen:Variant.Ulise.101354
FireEyeGeneric.mg.229e1d55f553c1f5
McAfeePacked-LF!229E1D55F553
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 005239691 )
BitDefenderGen:Variant.Ulise.101354
K7GWTrojan ( 005239691 )
Cybereasonmalicious.25dd03
Invinceaheuristic
CyrenW32/Trojan.OOEN-3230
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Malware.Noobyprotect-6622929-0
GDataWin32.Riskware.NoobyProtect.B
KasperskyHEUR:Packed.Win32.Generic
AlibabaPacked:Win32/NoobyProtect.9c8835db
NANO-AntivirusTrojan.Win32.Blackv.hctwpz
Paloaltogeneric.ml
Ad-AwareGen:Variant.Ulise.101354
EmsisoftGen:Variant.Ulise.101354 (B)
ComodoMalware@#b2cp547nahrc
TrendMicroTROJ_GEN.R002C0PBP20
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneDFI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/RedCap.ljbof
Antiy-AVLTrojan[Packed]/Win32.AGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.Ulise.D18BEA
AegisLabHacktool.Win32.Generic.x!c
ZoneAlarmHEUR:Packed.Win32.Generic
MicrosoftTrojan:Win32/Occamy.C
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34090.Kw1@aqnkXlgj
ALYacGen:Variant.Ulise.101354
MAXmalware (ai score=89)
VBA32Trojan.Wacatac
MalwarebytesTrojan.Injector
ESET-NOD32a variant of Win32/Packed.NoobyProtect.G suspicious
TrendMicro-HouseCallTROJ_GEN.R002C0PBP20
RisingTrojan.Fuerboos!8.EFC8 (CLOUD)
IkarusPUA.NoobyProtect
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.FKM!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.3bf

How to remove Ulise.101354?

Ulise.101354 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment